[Pkg-sysvinit-commits] r818 - sysvinit/trunk/debian/initscripts/etc/init.d

Petter Reinholdtsen pere at costa.debian.org
Fri Aug 4 15:27:04 UTC 2006


Author: pere
Date: 2006-08-04 15:27:03 +0000 (Fri, 04 Aug 2006)
New Revision: 818

Modified:
   sysvinit/trunk/debian/initscripts/etc/init.d/mountdevsubfs.sh
Log:
Mount /dev/shm using noexec,nodev,nosuid to make it harder to
misuse.  (Closes: #378182)


Modified: sysvinit/trunk/debian/initscripts/etc/init.d/mountdevsubfs.sh
===================================================================
--- sysvinit/trunk/debian/initscripts/etc/init.d/mountdevsubfs.sh	2006-08-04 15:26:45 UTC (rev 817)
+++ sysvinit/trunk/debian/initscripts/etc/init.d/mountdevsubfs.sh	2006-08-04 15:27:03 UTC (rev 818)
@@ -33,7 +33,7 @@
 	#
 	SHM_OPT=
 	[ "${SHM_SIZE:=$TMPFS_SIZE}" ] && SHM_OPT="-osize=$SHM_SIZE"
-	domount tmpfs shmfs /dev/shm $SHM_OPT
+	domount tmpfs shmfs /dev/shm -onoexec,nosuid,nodev $SHM_OPT
 
 	#
 	# Mount /dev/pts. Create master ptmx node if needed.




More information about the Pkg-sysvinit-commits mailing list