Re: Mounting filesystems with "noexec"

看板FB_security作者時間20年前 (2005/09/22 19:41), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串2/8 (看更多)
> As long as you can disable/limit the logging. One very nasty > "attack" would be > to loop trying to run a binary. Blow your logging partition. > Somebody could > then use that to do other things that would normally be logged, > safe in the > knowledge that their activities wouldn't be logged. > > I've seen systems brought to their knees by similar well > intentioned logging > activities. It's not pretty :) That's out of the question, of course :) A sysctl could control it. Anyway, the same can happen with zillions of logged events. Borja. _______________________________________________ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"
文章代碼(AID): #13CfXU00 (FB_security)
討論串 (同標題文章)
文章代碼(AID): #13CfXU00 (FB_security)