Thread (1 message) 1 message, 1 author, 2004-12-18

Re: [Coverity] Untrusted user data in kernel

From: Horst von Brand <hidden>
Date: 2004-12-18 14:25:22
Also in: lkml, netfilter-devel

linux-os [off-list ref] said:
On Fri, 17 Dec 2004, Bill Davidsen wrote:
[...]
quoted
Are you saying that processes with capability don't make mistakes? This
isn't a bug related to untrusted users doing privileged operations,
it's a case of using unchecked user data.
But isn't there always the possibility of "unchecked user data"?
Yes. But it should be kept to a minimum.
I can, as root, do `cp /dev/zero /dev/mem` and have the most
spectacular crask you've evet seen. I can even make my file-
systems unrecoverable.
Right. And you can get rid of /dev/mem if you don't want to screw yourself
this way (which is well-known). The problem at hand is _not_ in this same
league.
-- 
Dr. Horst H. von Brand                   User #22616 counter.li.org
Departamento de Informatica                     Fono: +56 32 654431
Universidad Tecnica Federico Santa Maria              +56 32 654239
Casilla 110-V, Valparaiso, Chile                Fax:  +56 32 797513
Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help