[CRIU] [PATCH] test: add cow01 into TEST_SUID_LIST

Pavel Emelyanov xemul at parallels.com
Tue Mar 24 00:59:26 PDT 2015


On 03/21/2015 09:35 AM, Andrey Vagin wrote:
> cow01 uses /proc/pid/pagemap which has been protected by
> CAP_SYS_ADMIN.
> 
> """
> 	commit	ab676b7d6fbf4b294bf198fb27ade5b0e865c7ce
> 	pagemap: do not leak physical addresses to non-privileged userspace
> 
> 	As pointed by recent post[1] on exploiting DRAM physical imperfection,
> 	/proc/PID/pagemap exposes sensitive information which can be used to do
> 	attacks.
> """
> 
> Signed-off-by: Andrey Vagin <avagin at openvz.org>

Applied, thanks



More information about the CRIU mailing list