Article 475D1 Systemd 241 Paired With Linux 4.19+ To Enable New Regular File & FIFO Protection

Systemd 241 Paired With Linux 4.19+ To Enable New Regular File & FIFO Protection

by
from Phoronix on (#475D1)
The Linux 4.19 kernel brought the ability to disallow the opening of FIFOs and regular files not owned by the user in world-writable sticky directories in the name of security. Had this ability been around previously it could have prevented a number of CVEs going back a long time. In helping ensure this functionality gets utilized, Systemd 241 will now set these sysctl options to enable the behavior by default...
External Content
Source RSS or Atom Feed
Feed Location http://www.phoronix.com/rss.php
Feed Title Phoronix
Feed Link https://www.phoronix.com/
Reply 0 comments