Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

/proc/self/setgroups write should be conditional #5

Open
kmcallister opened this issue Mar 10, 2015 · 2 comments
Open

/proc/self/setgroups write should be conditional #5

kmcallister opened this issue Mar 10, 2015 · 2 comments

Comments

@kmcallister
Copy link

On my kernel this file doesn't exist and can't be created.

Linux rustmouth 3.16.0-4-amd64 #1 SMP Debian 3.16.7-ckt2-1 (2014-12-08) x86_64 GNU/Linux
@mstewartgallus
Copy link

Then isn't your kernel insecure and should be upgraded immediately‽

@lucab
Copy link

lucab commented Apr 6, 2016

No, if I remember correctly, not having it is fine if the kernel does not support userns.
See https://security-tracker.debian.org/tracker/CVE-2014-8989 for this specific case.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants