[Users] New kernel vuln...

John Drescher drescherjm at gmail.com
Wed Sep 16 20:49:17 EDT 2009


>> AFAICT the linux-2.6.27-openvz has this obvious issue with mmap_min_addr due
>> to security/Kconfig containing:
>>
>> config SECURITY
>>         bool "Enable different security models"
>>         depends on SYSFS && !VE
>>
>> config SECURITY_DEFAULT_MMAP_MIN_ADDR
>>         int "Low address space to protect from user allocation"
>>         depends on SECURITY
>>         default 0
>>
>> Should we be worried?
>
> In general, can someone update the linux-2.6.27-openvz git tree?
> Nothing new has shown up on git.openvz.org for two months now...
>

I would like this as well. At minimum please merge the 2.6.27.25
update for ext4.

John



More information about the Users mailing list