login
Login
/
Register
Search
Search this site:
Forums
News
Blogs
Features
Site
Home
»
Mailing list archives
»
linux-kernel
»
2007
»
September
»
25
Re: Chroot bug
view
thread
Previous message: [
thread
] [
date
] [
author
]
Next message: [
thread
] [
date
] [
author
]
[view in full thread]
From: Miloslav Semler
Subject:
Re: Chroot bug
Date: Tuesday, September 25, 2007 - 9:19 am
>>> So what? Just do this: chdir into the root after chroot.
quoted text
>>> >> I don't think so. His exploit just got me all the way out of a chroot within a >> chroot within a chroot, inclusive of lots of chdirs. >> > > Close all fds that point to directories outside the root ;-) > >
This does not help. Let's try: chroot somewhere mkdir foo fd = open / chroot foo fchdir fd chdir ".." .... chdir ".." chroot "." so you are in root. -
unsubscribe notice
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to
majordomo@vger.kernel.org
More majordomo info at
http://vger.kernel.org/majordomo-info.html
Please read the FAQ at
http://www.tux.org/lkml/
Previous message: [
thread
] [
date
] [
author
]
Next message: [
thread
] [
date
] [
author
]
Messages in current thread:
Re: sys_chroot+sys_fchdir Fix
, Bodo Eggert
, (Thu Sep 20, 4:13 am)
Re: sys_chroot+sys_fchdir Fix
, Philipp Marek
, (Thu Sep 20, 4:59 am)
Re: sys_chroot+sys_fchdir Fix
, majkls
, (Thu Sep 20, 5:52 am)
Re: sys_chroot+sys_fchdir Fix
, David Newall
, (Thu Sep 20, 9:06 am)
Re: sys_chroot+sys_fchdir Fix
, Philipp Marek
, (Thu Sep 20, 9:17 am)
Re: sys_chroot+sys_fchdir Fix
, David Newall
, (Thu Sep 20, 11:02 am)
Re: sys_chroot+sys_fchdir Fix
, Bill Davidsen
, (Thu Sep 20, 1:53 pm)
Re: sys_chroot+sys_fchdir Fix
, David Newall
, (Fri Sep 21, 1:29 am)
Re: sys_chroot+sys_fchdir Fix
, Serge E. Hallyn
, (Mon Sep 24, 2:32 pm)
Re: sys_chroot+sys_fchdir Fix
, David Newall
, (Mon Sep 24, 3:04 pm)
Re: sys_chroot+sys_fchdir Fix
, Serge E. Hallyn
, (Mon Sep 24, 4:00 pm)
Re: sys_chroot+sys_fchdir Fix
, Serge E. Hallyn
, (Mon Sep 24, 4:02 pm)
Re: sys_chroot+sys_fchdir Fix
, David Newall
, (Tue Sep 25, 12:45 am)
Re: sys_chroot+sys_fchdir Fix
, Serge E. Hallyn
, (Tue Sep 25, 4:49 am)
Re: sys_chroot+sys_fchdir Fix
, David Newall
, (Tue Sep 25, 6:58 am)
Chroot bug (was: sys_chroot+sys_fchdir Fix)
, David Newall
, (Tue Sep 25, 8:10 am)
Re: Chroot bug (was: sys_chroot+sys_fchdir Fix)
, Jan Engelhardt
, (Tue Sep 25, 8:20 am)
Re: Chroot bug (was: sys_chroot+sys_fchdir Fix)
, Alan Cox
, (Tue Sep 25, 8:30 am)
Re: Chroot bug (was: sys_chroot+sys_fchdir Fix)
, Adrian Bunk
, (Tue Sep 25, 8:32 am)
Re: Chroot bug
, David Newall
, (Tue Sep 25, 8:35 am)
Re: Chroot bug
, Miloslav Semler
, (Tue Sep 25, 8:39 am)
Re: Chroot bug
, David Newall
, (Tue Sep 25, 8:41 am)
Re: Chroot bug
, Miloslav Semler
, (Tue Sep 25, 8:43 am)
Re: Chroot bug
, Jan Engelhardt
, (Tue Sep 25, 8:47 am)
Re: Chroot bug
, Alan Cox
, (Tue Sep 25, 8:48 am)
Re: Chroot bug
, Jan Engelhardt
, (Tue Sep 25, 8:48 am)
Re: Chroot bug
, Adrian Bunk
, (Tue Sep 25, 9:02 am)
Re: Chroot bug
, Miloslav Semler
, (Tue Sep 25, 9:19 am)
Re: Chroot bug
, Arjan van de Ven
, (Tue Sep 25, 9:33 am)
Re: Chroot bug
, Jan Engelhardt
, (Tue Sep 25, 9:52 am)
Re: Chroot bug
, Serge E. Hallyn
, (Tue Sep 25, 9:53 am)
Re: Chroot bug
, Miloslav Semler
, (Tue Sep 25, 10:00 am)
Re: Chroot bug
, Jan Engelhardt
, (Tue Sep 25, 10:05 am)
Re: Chroot bug
, Miloslav Semler
, (Tue Sep 25, 10:09 am)
Re: Chroot bug
, Al Viro
, (Tue Sep 25, 10:09 am)
Re: Chroot bug
, Miloslav Semler
, (Tue Sep 25, 10:19 am)
Re: Chroot bug
, David Newall
, (Tue Sep 25, 1:51 pm)
Re: Chroot bug
, David Newall
, (Tue Sep 25, 4:50 pm)
Re: Chroot bug
, Alan Cox
, (Tue Sep 25, 5:18 pm)
Re: Chroot bug
, Adrian Bunk
, (Tue Sep 25, 5:55 pm)
Re: Chroot bug
, Kyle Moffett
, (Tue Sep 25, 10:21 pm)
Re: Chroot bug
, Willy Tarreau
, (Tue Sep 25, 10:25 pm)
Re: Chroot bug
, David Newall
, (Wed Sep 26, 3:24 am)
Re: Chroot bug
, David Newall
, (Wed Sep 26, 3:27 am)
Re: Chroot bug
, Olivier Galibert
, (Wed Sep 26, 3:45 am)
Re: Chroot bug
, Alan Cox
, (Wed Sep 26, 3:47 am)
Re: Chroot bug
, David Newall
, (Wed Sep 26, 4:06 am)
Re: Chroot bug
, David Newall
, (Wed Sep 26, 4:13 am)
Re: Chroot bug
, Alan Cox
, (Wed Sep 26, 4:20 am)
Re: Chroot bug
, Kyle Moffett
, (Wed Sep 26, 5:54 am)
Re: Chroot bug
, Miloslav Semler
, (Wed Sep 26, 6:11 am)
Re: Chroot bug
, Bongani Hlope
, (Wed Sep 26, 6:13 am)
Re: Chroot bug
, linux-os (Dick Johnson)
, (Wed Sep 26, 6:18 am)
Re: Chroot bug
, Al Viro
, (Wed Sep 26, 6:42 am)
Re: Chroot bug
, Kyle Moffett
, (Wed Sep 26, 7:02 am)
Re: Chroot bug
, Miloslav Semler
, (Wed Sep 26, 7:51 am)
Re: Chroot bug
, Miloslav Semler
, (Wed Sep 26, 8:01 am)
Re: Chroot bug
, Olivier Galibert
, (Wed Sep 26, 8:02 am)
Re: Chroot bug (was: sys_chroot+sys_fchdir Fix)
, Bodo Eggert
, (Wed Sep 26, 12:23 pm)
Re: Chroot bug
, Jiri Kosina
, (Thu Sep 27, 6:49 am)
Navigation
Create content
Mailing list archives
Recent posts
Popular discussions
linux-kernel
:
FUJITA Tomonori
Re: [Scst-devel] Integration of SCST in the mainstream Linux kernel
Uwe Kleine-König
Re: [PATCH v2] ARM: allow, but warn, when issuing ioremap() on RAM
Ingo Molnar
Re: [RFC/RFT PATCH] sched: automated per tty task groups
Andrew Morton
Re: [PATCH v3 0/4] Introduce hardware spinlock framework
Rafael J. Wysocki
[Bug #15669] INFO: suspicious rcu_dereference_check()
git-commits-head
:
Linux Kernel Mailing List
libata: disable ATAPI AN by default
Linux Kernel Mailing List
ARM: 5905/1: ARM: Global ASID allocation on SMP
Linux Kernel Mailing List
Disallow gcc versions 4.1.{0,1}
Linux Kernel Mailing List
timer: Try to survive timer callback preempt_count leak
Linux Kernel Mailing List
Documentation/timers/hpet_example.c: only build on X86
linux-netdev
:
Arnaldo Carvalho de Melo
Re: [PATCH 06/37] dccp: Limit feature negotiation to connection setup phase
Gerrit Renker
[PATCH 1/5] dccp: Initialisation framework for feature negotiation
Daniel Lezcano
getsockopt(TCP_DEFER_ACCEPT) value change
David Miller
Re: 2.6.27.18: bnx2/tg3: BUG: "scheduling while atomic" trying to ifenslave a seco...
Badalian Vyacheslav
Re: tc filter flow hash question
git
:
Junio C Hamano
Re: [PATCH] Detached HEAD (experimental)
Stefan Richter
Re: [kernel.org users] [RFD] On deprecating "git-foo" for builtins
A Large Angry SCM
Re: [RFC] origin link for cherry-pick and revert
Petr Baudis
Re: PPC SHA-1 Updates in "pu"
Mike Miller
git message
linux-ath5k-devel
:
Lucio Torre
[ath5k-devel] ath5k problems on lenovo x200
Soeren Sonnenburg
Re: [ath5k-devel] ath5k_pci: gain calibration timeout / unable to reset hardware -11
Bob Copeland
Re: [ath5k-devel] Send packet from inside ath5k_intr() or ath5k_tasklet_rx()
Nick Kossifidis
Re: [ath5k-devel] madwifi HAL register dumps
Joerg Pommnitz
Re: [ath5k-devel] ath5k phy0: failed to warm reset the MAC Chip
Colocation donated by:
Syndicate