> However, if /sbin/init is on a read-only filesystem,
> or you want to redirect init to be running from a different
> filesystem because you need to umount /sbin ,
> this feature is inadequate.

This sounds like a security issue.  If the admin made / read-only, and
someone is able to gain enough privileges to talk to init but not to
remount the file system, they could re-exec init with a binary they
provide instead of the binary the machine administrator intented to
run.  Am I wrong?  If I am right, I believe we should not implement
this feature.


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to