[ubuntu-hardened] Re moving suid root from binaries where it isn't needed

Phillip Lougher phillip at lougher.demon.co.uk
Wed Oct 31 04:59:02 GMT 2007


Kees Cook wrote:

> AppArmor was disabled (not removed) on the liveCD due to issues
> surrounding how unionfs was making the root filesystem paths visible to
> AppArmor.  The installed system, though, has it enabled.

OK, I hadn't heared about that, thanks.  I've been out of the loop
regards Canonical for quite a few weeks.

Phillip




More information about the ubuntu-hardened mailing list