/sys/doc/ Documentation archive


[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

namespace/security



I've written a program that first creates a new namespace using PCTL. When I
start this program from the directory '/usr/os/' the name space for the
process
becomes '/' where '/' refers to '/usr/os/'

There is also a directory '/usr/bogey/' on my system which contains the file
'foo'.

Trying 'open /usr/bogey/foo' fails, as expected but to my surprise:

 'open /../bogey/foo' succeeds.

Can anyone comment on this in relation with security?


Daniel van Os

+-----------------+----------------------------------+-----------------+
|os@cs.utwente.nl | http://wwwspa.cs.utwente.nl/~os/ | osdorp@xs4all.nl|
+-----------------+----------------------------------+-----------------+
                  | PI=3  (for PI small and 3 large) |
                  +----------------------------------+