https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=121073
Kubilay Kocak changed:
What|Removed |Added
Priority|Normal |---
Assignee|b...@freebs
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=121073
Ed Maste changed:
What|Removed |Added
Status|Open|Closed
Resolution|---
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=121073
Julian Elischer changed:
What|Removed |Added
CC||jul...@freebsd.org
--- Comment #
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=121073
Eitan Adler changed:
What|Removed |Added
Status|In Progress |Open
--- Comment #11 from Eitan Adle
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=121073
--- Comment #10 from Robert Watson ---
Just to follow up on Nathan and my conversation on IRC, things are made rather
more complicated than one might hope by a gradual increase in the number of
processes, over time, with credential changes.
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=121073
--- Comment #9 from Nathan Whitehorn ---
There are, I think, two potential security issues here:
1. Many pieces of software assume that if you chroot and drop privileges, no
further chroot is possible.
2. There could be sneaky ways of obtai
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=121073
Robert Watson changed:
What|Removed |Added
CC||rwat...@freebsd.org
--- Comment #8
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=121073
--- Comment #7 from ji...@quis.cx ---
I remember someone saying this could be exploited using rfork. I don't know why
it's not listed in this bug.
IIRC the problem was that fd_rdir (root of the processes) was stored in
proc->p_fd (struct fi
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=121073
Nathan Whitehorn changed:
What|Removed |Added
Attachment #84994|0 |1
is obsolete|