[Bug 1845637] Re: Drop setting fs.protected_regular and fs.protected_fifos from sysctl defaults shipped by systemd

Balint Reczey balint.reczey at canonical.com
Wed Oct 2 20:27:09 UTC 2019


Those defaults should probably be set by Linux, hence marking linux package as affected.
With the systemd packaging dropping the new setting originating from systemd upstream Ubuntu's defaults become less secure in this area compared to other distros leaving upstream defaults applied, thus I also mark this bug as a public security issue.

** Also affects: linux (Ubuntu)
   Importance: Undecided
       Status: New

** Information type changed from Public to Public Security

-- 
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to systemd in Ubuntu.
https://bugs.launchpad.net/bugs/1845637

Title:
  Drop setting fs.protected_regular and fs.protected_fifos from sysctl
  defaults shipped by systemd

Status in linux package in Ubuntu:
  Incomplete
Status in systemd package in Ubuntu:
  New

Bug description:
  Those settings are typically set by the kernel in Ubuntu.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1845637/+subscriptions



More information about the foundations-bugs mailing list