Re: Registration Weakness in Linux Kernel's Binary formats

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Ar Maw, 2006-10-03 am 16:48 -0500, ysgrifennodd Chase Venters:
> So the problem you find is that newly registered binfmts are inserted into 
> the front of the binfmt list instead of the rear, and this means that a 
> binfmt handler can slip in at runtime at run quietly before any other 
> handler?

This is a feature as anyone trying to debug versions of the elf loader
could would find out quite fast.

> 
> I'm not sure I see this as a real problem. If you can load a module into 
> kernel space and access arbitrary symbols (not to mention run in ring 0) I 
> think you can do a lot more than just hide out on the binfmt list.
> 
> Am I missing something?

Don't think so. At the point you can load code into the kernel you can
replace any code anyway.

NOTABUG

Alan

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to [email protected]
More majordomo info at  http://vger.kernel.org/majordomo-info.html
Please read the FAQ at  http://www.tux.org/lkml/

[Index of Archives]     [Kernel Newbies]     [Netfilter]     [Bugtraq]     [Photo]     [Stuff]     [Gimp]     [Yosemite News]     [MIPS Linux]     [ARM Linux]     [Linux Security]     [Linux RAID]     [Video 4 Linux]     [Linux for the blind]     [Linux Resources]
  Powered by Linux