[CentOS] Heads up on local root escalation

Mon May 12 21:11:30 UTC 2014
Keith Keller <kkeller at wombat.san-francisco.ca.us>

On 2014-05-12, Akemi Yagi <amyagi at gmail.com> wrote:
>
> According to the upstream BZ 1094232, there is a patch from kernel.org:
>
> https://git.kernel.org/cgit/linux/kernel/git/gregkh/tty.git/commit/?h=tty-linus&id=4291086b1f081b869c6d79e5b7441633dc3ace00

Actually, I was wondering about mitigation along the lines of
blacklisting a module, tuning a sysctl parameter, or some other
mitigation that wouldn't require a new kernel.  Perhaps such mitigation
isn't even possible with this issue.

--keith


-- 
kkeller at wombat.san-francisco.ca.us