https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=211580

--- Comment #6 from Miroslav Lachman <[email protected]> ---
(In reply to Joe Barbish from comment #5)

I don't think so. Attackers can use security.jail.jailed to show the truth.

Leaking SW / HW info from the host to jail by dmesg should be avoided (with
configurable sysctl)

We are running all jailers with security.bsd.unprivileged_read_msgbuf=0 for
this reason.

-- 
You are receiving this mail because:
You are the assignee for the bug.
_______________________________________________
[email protected] mailing list
https://lists.freebsd.org/mailman/listinfo/freebsd-jail
To unsubscribe, send any mail to "[email protected]"

Reply via email to