On Sun, Jan 02, 2005 at 08:29:19PM +0100, Christoph Hellwig wrote: > On Sun, Jan 02, 2005 at 07:22:28PM +0000, Luke Kenneth Casson Leighton wrote: > > Package: initrd-tools > > Version: 0.1.65 > > Severity: normal > > > > > > 2.6.9 and above now have capability as a module. > > > > if this module is not loaded, udev will not operate properly. > > and with the module loaded we'll have a local root exploit. I'll > disable support for modular capabilities in the next kernel-source > releases. oh dear!
... so it'll be CONFIG_CAPABILITY=y? > > selinux also is now a module and it too should probably be loaded, > > no, it's not. 2.6.9 it's CONFIG_SELINUX=y?

