Re: Security improvements for stable kernels

2016-12-31 Thread Ben Hutchings
On Sat, 2016-12-31 at 17:59 +0100, Julien Cristau wrote: > On Sun, Dec 25, 2016 at 11:15:12 +, Ben Hutchings wrote: > > > I would like to make a couple of improvements to security features in > > stable: > > > > 1. Add the option to disable unprivileged use of perf_event_open(). > >    This r

Re: Security improvements for stable kernels

2016-12-31 Thread Julien Cristau
On Sun, Dec 25, 2016 at 11:15:12 +, Ben Hutchings wrote: > I would like to make a couple of improvements to security features in > stable: > > 1. Add the option to disable unprivileged use of perf_event_open(). >This rwequires a small out-of-tree patch that we've carried in >unstable

Security improvements for stable kernels

2016-12-25 Thread Ben Hutchings
I would like to make a couple of improvements to security features in stable: 1. Add the option to disable unprivileged use of perf_event_open(). This rwequires a small out-of-tree patch that we've carried in unstable for some time. In unstable this is also enabled by default, but I don'