https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=211580

--- Comment #6 from Miroslav Lachman <000.f...@quip.cz> ---
(In reply to Joe Barbish from comment #5)

I don't think so. Attackers can use security.jail.jailed to show the truth.

Leaking SW / HW info from the host to jail by dmesg should be avoided (with
configurable sysctl)

We are running all jailers with security.bsd.unprivileged_read_msgbuf=0 for
this reason.

-- 
You are receiving this mail because:
You are the assignee for the bug.
_______________________________________________
freebsd-jail@freebsd.org mailing list
https://lists.freebsd.org/mailman/listinfo/freebsd-jail
To unsubscribe, send any mail to "freebsd-jail-unsubscr...@freebsd.org"

Reply via email to