On Wed, Aug 06, 2008 at 10:24:21AM +0100, tvrtko.ursulin@sophos.com wrote:It prevents any user from overwriting an existing executable, and it prevents any user from adding an executable file to a common directory (/usr/bin). It also prevents any user from overwriting a different user's data file. What specific threat model are you feeling is still present on Linux today that this proposal is supposed to address? thanks, greg k-h --
