On Mon, Aug 02, 2021 at 09:16:51PM +0200, Ben Hutchings wrote:
> Control: tag -1 patch
>
> I think disabling unprivileged BPF is probably sensible. So far as I
> know, it is quite limited in usefulness (without exploiting verifier
> bugs :-). If it can't be enabled again, this should maybe be
Control: tag -1 patch
I think disabling unprivileged BPF is probably sensible. So far as I
know, it is quite limited in usefulness (without exploiting verifier
bugs :-). If it can't be enabled again, this should maybe be done with
a sysctl config file in linux-base rather than being a built-in
Am Wed, Jun 30, 2021 at 08:33:01PM +0200 schrieb Tomas Pospisek:
> reassign 990411 linux-image-5.10.0-7-amd64
>
> -
>
> Thanks Michael, reassigning as proposed. Though I'm wondering (and not
> finding) whether there would be a more general package to assign this ticket
> to (such as
Hi,
Related: #928362. And on non src:linux #919226. It has to be noted
that once set kernel.unprivileged_bpf_disabled=1 it cannot be cleared
again.
Regards,
Salvatore
Control: reassign -1 src:linux
Am 30.06.21 um 20:33 schrieb Tomas Pospisek:
reassign 990411 linux-image-5.10.0-7-amd64
-
Thanks Michael, reassigning as proposed. Though I'm wondering (and not
finding) whether there would be a more general package to assign this
ticket to (such as
reassign 990411 linux-image-5.10.0-7-amd64
-
Thanks Michael, reassigning as proposed. Though I'm wondering (and not
finding) whether there would be a more general package to assign this
ticket to (such as linux-image-5.x or something).
Any thoughts on this problem in the security or the
Am 28.06.21 um 14:52 schrieb Tomas Pospisek:
Package: systemd
Version: 247.3-5
Severity: wishlist
Tags: security
X-Debbugs-Cc: Debian Security Team
Hi,
TLDR:
$ sudo sysctl kernel.unprivileged_bpf_disabled
kernel.unprivileged_bpf_disabled = 0
please disable unprivileged BPF by
Package: systemd
Version: 247.3-5
Severity: wishlist
Tags: security
X-Debbugs-Cc: Debian Security Team
Hi,
TLDR:
$ sudo sysctl kernel.unprivileged_bpf_disabled
kernel.unprivileged_bpf_disabled = 0
please disable unprivileged BPF by default, it seems that it
is not safe to be allowed
8 matches
Mail list logo