Re: kern/127048: systat(1) information leak when
Synopsis: systat(1) information leak when security.bsd.see_other_uids=0
State-Changed-From-To: open->feedback
State-Changed-By: jilles
State-Changed-When: Sun Apr 13 20:41:07 UTC 2014
State-Changed-Why:
I tested this on stable/9 and head (11.0) and it appears to work properly.
Either this was fixed since 7.0 or there is something special about
your environment.
Make sure that /usr/bin/systat does not have setuid/setgid bits set;
if so, it will read from kernel memory and ignore
security.bsd.see_other_uids.
Can you provide more information?
Responsible-Changed-From-To: freebsd-bugs->jilles
Responsible-Changed-By: jilles
Responsible-Changed-When: Sun Apr 13 20:41:07 UTC 2014
Responsible-Changed-Why:
Track replies.
http://www.freebsd.org/cgi/query-pr.cgi?pr=127048
_______________________________________________
freebsd-bugs@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-bugs
To unsubscribe, send any mail to "freebsd-bugs-unsubscribe@freebsd.org"
討論串 (同標題文章)