[$] Slowing the flow of core-dump-related CVEs
The 6.16 kernel will include a number of changes to how the kernel handlesthe processing of core dumps for crashed processes. Christian Brauner explainedhis reasons for doing this work as: "
Because I'm a clown and also I hadit with all the CVEs because we provide a **** API for userspace". Thehandling of core dumps has indeed been a constant source ofvulnerabilities; with luck, the 6.16 work will result in rather fewer ofthem in the future.