3 ms·
That is quite a leap to assume root access. A user mode database should have write access only to partitions that are mounted noexec. That would make getting
by graylights 13y ago
That is quite a leap to assume root access. A user mode database should have write access only to partitions that are mounted noexec. That would make getting root privileges quite hard even on a vulnerable kernel.
Also with proper hardening you can prevent the kernel from being modified even by root. Things like FreeBSD securelevel that once enabled blocks writing to kernel memory and raw disk devices.
- tptacek 13y agoExcuse me if a few years of writing securelevel advisories back in the 1990s leaves me unimpressed with the power of securelevels. :)