OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
[suse-security] Extra Chroot protection in SUSE kernels?

From: Mike Tierney (miketmarketview.co.nz)
Date: Sun Jan 16 2005 - 19:45:00 CST


Does anyone know if there is any extra chroot protection in the SuSE
kernels?

Apparently crafty people can "break out" of chroot jail's but there are 3rd
party patches that make this much harder to do, patches like Grsecurity,
maybe Openwall(?) and Linux Vserver (linux-vserver.org), etc. I don't have a
problem taking a vanilla kernel and patching it... but then I'd miss out on
things like Oracle Certification, etc.

So yes.... does anyone know offhand if the SLES kernels have had their
chroot security increased? Alas I'm not a kernel hacker or I'd go take a
peek at the source myself! :)

Cheers
Mike

--
Check the headers for your unsubscription address
For additional commands, e-mail: suse-security-helpsuse.com
Security-related bug reports go to securitysuse.de, not here