Re: Chroot bug

From: Jiri Kosina
Date: Thu Sep 27 2007 - 09:51:17 EST

On Wed, 26 Sep 2007, Miloslav Semler wrote:

> so there is no discussion about mount & others. I think, if you have
> CAP_SYS_MOUNT/CAP_SYS_ADMIN, you need not solve chroot() and how to
> break it.

CAP_SYS_PTRACE allows you to break out of chroot in a pretty trivial way

Jiri Kosina
