Drop setting fs.protected_regular and fs.protected_fifos from sysctl defaults shipped by systemd
Bug #1845637 reported by
Balint Reczey
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
linux (Ubuntu) |
Confirmed
|
Undecided
|
Unassigned | ||
systemd (Ubuntu) |
Fix Released
|
Undecided
|
Unassigned |
Bug Description
Those settings are typically set by the kernel in Ubuntu.
CVE References
To post a comment you must log in.
Those defaults should probably be set by Linux, hence marking linux package as affected.
With the systemd packaging dropping the new setting originating from systemd upstream Ubuntu's defaults become less secure in this area compared to other distros leaving upstream defaults applied, thus I also mark this bug as a public security issue.