[ubuntu-hardened] fs: suid_dumpable=2 and a security issue (gain root privileges).

Tyler Hicks tyhicks at canonical.com
Mon Jan 4 15:55:02 UTC 2016


On 2015-12-18 17:17:15, daniel curtis wrote:
> ​Hi Tyler
>> 
> 
> > Note that this is what Kees is referring to in his commit message as a
> > "core dump pipe handler". The core dump is piped into apport.
> >
> 
> > According to the commit message, systems with core_pattern set to a pipe
> > handler are not affected. That means that Ubuntu, in its default
> > configuration, is not affected.
> >
> > Tyler
> 
> 
> 
> ​So, according to all of this, ​everything is okay, right?

Correct.

Tyler
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: Digital signature
URL: <https://lists.ubuntu.com/archives/ubuntu-hardened/attachments/20160104/1051e5ea/attachment.pgp>


More information about the ubuntu-hardened mailing list