Jan Engelhardt wrote:
On Sep 26 2007 01:11, David Newall wrote:Jan Engelhardt wrote:On Sep 26 2007 00:40, David Newall wrote:Miloslav Semler pointed out that a root process can chdir("..") out of its chroot.So what? Just do this: chdir into the root after chroot.I don't think so. His exploit just got me all the way out of a chroot within a chroot within a chroot, inclusive of lots of chdirs.Close all fds that point to directories outside the root ;-)
Nope, still gets out. - To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to [email protected] More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/
- References:
- Re: sys_chroot+sys_fchdir Fix
- From: "Philipp Marek" <[email protected]>
- Re: sys_chroot+sys_fchdir Fix
- From: David Newall <[email protected]>
- Re: sys_chroot+sys_fchdir Fix
- From: Philipp Marek <[email protected]>
- Re: sys_chroot+sys_fchdir Fix
- From: David Newall <[email protected]>
- Re: sys_chroot+sys_fchdir Fix
- From: Bill Davidsen <[email protected]>
- Re: sys_chroot+sys_fchdir Fix
- From: David Newall <[email protected]>
- Re: sys_chroot+sys_fchdir Fix
- From: "Serge E. Hallyn" <[email protected]>
- Re: sys_chroot+sys_fchdir Fix
- From: David Newall <[email protected]>
- Re: sys_chroot+sys_fchdir Fix
- From: "Serge E. Hallyn" <[email protected]>
- Re: sys_chroot+sys_fchdir Fix
- From: David Newall <[email protected]>
- Re: sys_chroot+sys_fchdir Fix
- From: "Serge E. Hallyn" <[email protected]>
- Re: sys_chroot+sys_fchdir Fix
- From: David Newall <[email protected]>
- Chroot bug (was: sys_chroot+sys_fchdir Fix)
- From: David Newall <[email protected]>
- Re: Chroot bug (was: sys_chroot+sys_fchdir Fix)
- From: Jan Engelhardt <[email protected]>
- Re: Chroot bug
- From: David Newall <[email protected]>
- Re: Chroot bug
- From: Jan Engelhardt <[email protected]>
- Re: sys_chroot+sys_fchdir Fix
- Prev by Date: Re: [patch 3/5] Add samples subdir (updated)
- Next by Date: Re: sys_chroot+sys_fchdir Fix
- Previous by thread: Re: Chroot bug
- Next by thread: Re: Chroot bug
- Index(es):