Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
Reviving the modprobe_path Technique: Overcoming search_binary_handler() Patch
(
theori.io
)
8 points
by
todsacerdoti
10 months ago
|
hide
|
past
|
favorite
|
3 comments
sour-taste
10 months ago
[–]
Does anyone know why modprobe_path isn't in read only memory? Would just making it const char be enough to avoid this technique?
sour-taste
10 months ago
|
parent
[–]
Oh, it's because it can be set by /proc/sys/kernel/modprobe
rfoo
10 months ago
|
root
|
parent
[–]
There is CONFIG_STATIC_USERMODEHELPER that disables the sysctl you mentioned and actually make modprobe_path read-only.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: