vmsplice Local Root Exploit

Bruno Wolff III bruno at wolff.to
Mon Feb 11 19:34:14 UTC 2008


On Mon, Feb 11, 2008 at 09:53:12 -0500,
  Yaakov Nemoy <loupgaroublond at gmail.com> wrote:
> 
> >From the development standpoint, is SELinux flawed, or is SELinux
> failing to run all users confined because we're still in development
> with end user bits and pieces?

Currently they are confined in a very big box. Some work is starting on
shrinking that box in Fedora 9. Dan Walsh has some comments on restricting
Firefox/Minefield on his blog.




More information about the fedora-devel-list mailing list