Re: Capabilities

From: Ralf Baechle (ralf@uni-koblenz.de)
Date: Sun Feb 20 2000 - 00:23:50 EST


On Sat, Feb 19, 2000 at 06:04:05PM -0500, John Prevost wrote:

> Pavel also mentioned that there's no way to prevent exec--I disagree
> (though I haven't looked at the list of capabilities in Linux or
> Posix, I'm afraid). Certainly, if you deny exec abilities you also
> want to deny, at least, the ability to mmap files as executable, and
> you also want to arrange that executable pages are never writable.

Doesn't make sense, most CPU's don't make a difference between read
and execute permissions for mappings or at least like the m68k don't
use their hardware capability to do so under Linux.

  Ralf

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.rutgers.edu
Please read the FAQ at http://www.tux.org/lkml/



This archive was generated by hypermail 2b29 : Wed Feb 23 2000 - 21:00:25 EST