[Bug 19732] Security: use CAP_SYS_RAWIO during start up to map the memory below mmap_min_addr instead of permanently lowering it at install time

wine-bugs at winehq.org wine-bugs at winehq.org
Sun Aug 16 19:36:12 CDT 2009


http://bugs.winehq.org/show_bug.cgi?id=19732





--- Comment #8 from Scott Ritchie <scott at open-vote.org>  2009-08-16 19:36:09 ---
I thought the security of CAP_SYS_RAWIO rather than mmap_min_addr wasn't to
make Wine more secure, but to make the system more secure when Wine isn't
running.  The kernel bug above, for instance, was exploitable by non-wine
programs if the user merely had Wine installed.

-- 
Configure bugmail: http://bugs.winehq.org/userprefs.cgi?tab=email
Do not reply to this email, post in Bugzilla using the
above URL to reply.
------- You are receiving this mail because: -------
You are watching all bug changes.



More information about the wine-bugs mailing list