Re: Chroot bug

From: Jiri Kosina
Date: Thu Sep 27 2007 - 09:51:17 EST


On Wed, 26 Sep 2007, Miloslav Semler wrote:

> so there is no discussion about mount & others. I think, if you have
> CAP_SYS_MOUNT/CAP_SYS_ADMIN, you need not solve chroot() and how to
> break it.

CAP_SYS_PTRACE allows you to break out of chroot in a pretty trivial way
too.

--
Jiri Kosina
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/