From owner-freebsd-current@FreeBSD.ORG Sun Feb 5 14:13:51 2006 Return-Path: X-Original-To: current@freebsd.org Delivered-To: freebsd-current@FreeBSD.ORG Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 13EC416A420 for ; Sun, 5 Feb 2006 14:13:51 +0000 (GMT) (envelope-from bkoenig@cs.tu-berlin.de) Received: from efacilitas.de (smtp.efacilitas.de [85.10.196.108]) by mx1.FreeBSD.org (Postfix) with ESMTP id A83CE43D46 for ; Sun, 5 Feb 2006 14:13:50 +0000 (GMT) (envelope-from bkoenig@cs.tu-berlin.de) Received: from eurystheus.local (port-212-202-169-72.dynamic.qsc.de [212.202.169.72]) by efacilitas.de (Postfix) with ESMTP id 19F5A4C491; Sun, 5 Feb 2006 15:22:42 +0100 (CET) Received: from [192.168.1.13] (unknown [192.168.1.13]) by eurystheus.local (Postfix) with ESMTP id 5A57B5285F; Sun, 5 Feb 2006 15:12:04 +0100 (CET) Message-ID: <43E60814.8030304@cs.tu-berlin.de> Date: Sun, 05 Feb 2006 15:13:40 +0100 From: =?ISO-8859-15?Q?Bj=F6rn_K=F6nig?= User-Agent: Mozilla Thunderbird 1.0.7 (Windows/20050923) X-Accept-Language: de-DE, de, en-us, en MIME-Version: 1.0 To: =?ISO-8859-15?Q?Bj=F6rn_K=F6nig?= References: <43E60708.9000902@cs.tu-berlin.de> In-Reply-To: <43E60708.9000902@cs.tu-berlin.de> Content-Type: text/plain; charset=ISO-8859-15; format=flowed Content-Transfer-Encoding: 8bit Cc: current@freebsd.org Subject: Re: unprivileged users are able to kill certain jailed processes X-BeenThere: freebsd-current@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Discussions about the use of FreeBSD-current List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 05 Feb 2006 14:13:51 -0000 Björn König schrieb: > These are some steps to reproduce: > > root@host # jail -Uuserxy / localhost 127.0.0.1 /bin/sleep 12345& > > root@host # ps a | grep sleep > > 2255 p2 IJ 0:00,01 /bin/sleep 12345 > > login as 'userxy' > > userxy@host $ ps a | grep sleep > 2255 p2 IJ 0:00,01 /bin/sleep 12345 userxy@host $ kill 2255 > userxy@host $ ps a | grep sleep > [nothing]