FreeBSD-SA-26:02.jail

Status
Not open for further replies.
F

FreeBSD Security

Guest
By default, jailed processes cannot mount filesystems, including nullfs(4). However, the allow.mount.nullfs option enables mounting nullfs filesystems, subject to privilege checks.

If a privileged user within a jail is able to nullfs-mount directories, a limitation of the kernel's path lookup logic allows that user to escape the jail's chroot, yielding access to the full filesystem of the host or parent jail.
Original article here.
Consider this when replying.



Continue reading...
 
Status
Not open for further replies.
Back
Top