misc/86630: core dump in jail shows up in security report for all jails on system

Christian S.J. Peron csjp at FreeBSD.org
Wed Sep 28 14:06:01 PDT 2005


Synopsis: core dump in jail shows up in security report for all jails on system

State-Changed-From-To: open->analyzed
State-Changed-By: csjp
State-Changed-When: Wed Sep 28 21:02:26 GMT 2005
State-Changed-Why: 
I dont think this is an issue. There is a setting which will take care
of this problem if you feel it's a problem. Try:

sysctl security.bsd.unprivileged_read_msgbuf=0

This will prevent unprivileged users, including prison root from
reading the kernel message buffer.


Responsible-Changed-From-To: freebsd-bugs->csjp
Responsible-Changed-By: csjp
Responsible-Changed-When: Wed Sep 28 21:02:26 GMT 2005
Responsible-Changed-Why: 
I dont think this is an issue. There is a setting which will take care
of this problem if you feel it's a problem. Try:

sysctl security.bsd.unprivileged_read_msgbuf=0

This will prevent unprivileged users, including prison root from
reading the kernel message buffer.

http://www.freebsd.org/cgi/query-pr.cgi?pr=86630


More information about the freebsd-bugs mailing list