Re: Breaking out of chroot
From: Måns Rullgård (mru_at_users.sourceforge.net)
Date: 08/25/03
- Previous message: Pascal Bourguignon: "Re: What protects Unices from Virus like attacks ??"
- In reply to: Floyd Davidson: "Re: Breaking out of chroot"
- Next in thread: Tim Haynes: "Re: Breaking out of chroot"
- Reply: Tim Haynes: "Re: Breaking out of chroot"
- Reply: Floyd Davidson: "Re: Breaking out of chroot"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]
Date: Mon, 25 Aug 2003 18:26:58 +0200
Floyd Davidson <floyd@barrow.com> writes:
> mru@users.sourceforge.net (Måns Rullgård) wrote:
>>Admittedly, the risk of having a buggy program inside the
>>chroot is smaller ...
>
> ...
>
>>I only showed that chroot is useless
>>for this purpose.
>
> It seems you've show that it is *useful* for that purpose.
How is that? Any non-zero risk for breach of security should be
considered as 100%. If there's a way, someone will find it, if
motivated. Putting things in a chroot environment for protection is
only false security, which often is worse than no security at all.
-- Måns Rullgård mru@users.sf.net
- Previous message: Pascal Bourguignon: "Re: What protects Unices from Virus like attacks ??"
- In reply to: Floyd Davidson: "Re: Breaking out of chroot"
- Next in thread: Tim Haynes: "Re: Breaking out of chroot"
- Reply: Tim Haynes: "Re: Breaking out of chroot"
- Reply: Floyd Davidson: "Re: Breaking out of chroot"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]
Relevant Pages
|