Date: Sat, 1 Mar 2008 06:40:03 GMT From: FreeBSD Security Officer <cperciva@FreeBSD.org> To: freebsd-bugs@FreeBSD.org Subject: Re: kern/121073: [kernel] [patch] run chroot as an unprivileged user Message-ID: <200803010640.m216e34d035959@freefall.freebsd.org>
next in thread | raw e-mail | index | archive | help
The following reply was made to PR kern/121073; it has been noted by GNATS. From: FreeBSD Security Officer <cperciva@freebsd.org> To: bug-followup@FreeBSD.org, jille@quis.cx Cc: Subject: Re: kern/121073: [kernel] [patch] run chroot as an unprivileged user Date: Fri, 29 Feb 2008 22:36:24 -0800 This is an interesting approach, and at first glance I can't see anything wrong with it. That said, it needs very careful consideration; so to avoid confusion and make sure that this doesn't get committed before the right people have a chance to consider it sufficiently: +----------------------------------------------------------+ |UNDER NO CONDITIONS SHOULD THIS PATCH BE COMMITTED WITHOUT| |EXPLICIT APPROVAL FROM THE FREEBSD SECURITY OFFICER. | +----------------------------------------------------------+ Colin Percival
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200803010640.m216e34d035959>