Re: [Vserver] bcapabilities not working?

2005-01-26 Thread Andrew Mendelsohn
/vinfo XID:16 BCaps: CCaps: CFlags: 00020210 CIPid: 0 Andy Enrico Scholz wrote: [EMAIL PROTECTED] (Andrew Mendelsohn) writes: Here is the Debug output. There is no corresponding line for bcap, as "++ OPTS_VATTRIBUTE=("[EMAIL PROTECTED]&

Re: [Vserver] bcapabilities not working?

2005-01-26 Thread Andrew Mendelsohn
est -e /etc/vservers/apache2server/capabilities ++ return 0 ++ _generateFlagOptions /etc/vservers/apache2server ++ local vdir=/etc/vservers/apache2server ++ CHCONTEXT_FLAG_OPTS=() ++ test '!' -e /etc/vservers/apache2server/flags Herbert Poetzl wrote: On Fri, Jan 14, 2005 at 06:34:02PM -0

Re: [Vserver] vserver patch-2.6.10-vs1.9.4-rc2 conflicts with fixes for CAN-2005-0001 and RLIMIT_MEMLOCK exploit]

2005-01-23 Thread Andrew Mendelsohn
the two security fixes listed below with fuzz 2. If anyone wants the resulting patch file I'll be happy to send it. I'm testing it now. Andy Andrew Mendelsohn wrote: Hi, Here are links to the two security patches. http://www.acm.cs.rpi.edu/~dilinger/patches/2.6.10/as2/linux-2.6.

Re: [Vserver] vserver patch-2.6.10-vs1.9.4-rc2 conflicts with fixes for CAN-2005-0001 and RLIMIT_MEMLOCK exploit]

2005-01-23 Thread Andrew Mendelsohn
k out the 2.6.11 patches to see if they already deal with these exploits. Thanks for your help! Andy Herbert Poetzl wrote: On Sun, Jan 23, 2005 at 12:59:51AM -0800, Andrew Mendelsohn wrote: After patching a 2.6.10 kernel with the patch-2.6.10-vs1.9.4-rc2 patch, I can't cleanly apply fix

[Vserver] vserver patch-2.6.10-vs1.9.4-rc2 conflicts with fixes for CAN-2005-0001 and RLIMIT_MEMLOCK exploit

2005-01-23 Thread Andrew Mendelsohn
After patching a 2.6.10 kernel with the patch-2.6.10-vs1.9.4-rc2 patch, I can't cleanly apply fixes for CAN-2005-0001 and RLIMIT_MEMLOCK exploits because of critical changes to mmap.c I was using fixes from the new as-patch series from Andres Salomon which is supposed to be a minimum set of

[Vserver] bcapabilities not working?

2005-01-14 Thread Andrew Mendelsohn
Hi, Using 2.6.10 with patch-2.6.10-vs1.9.3.17.diff and compiling util-vserver 0.30.196, it seems that I can't remove capabilities via the /usr/local//etc/vservers/webserver/bcapabilities configuration file using ~ALL. The /usr/local//etc/vservers/webserver/ccapabilities file does what it is s