[OE-core] pseudo: host user contamination

Burton, Ross ross.burton at intel.com
Sat Mar 24 23:04:50 UTC 2018


On 24 March 2018 at 20:12, Victor Kamensky <kamensky at cisco.com> wrote:
> Here is another crazy idea how to deal with it, just
> brainstorming what options are on the table: disable
> renameat2 with help of seccomp and force coreutils to
> use other calls. Something along the lines that were
> suggested with intercept of syscall function call, but
> let kernel to do interception work.

Wow, that's impressively magic.  Does this depend on kernel options or
specific recent versions?

Ross



More information about the Openembedded-core mailing list