FAQ Search Today's Posts Mark Forums Read
» Video Reviews

» Linux Archive

Linux-archive is a website aiming to archive linux email lists and to make them easily accessible for linux users/developers.


» Sponsor

» Partners

» Sponsor

Go Back   Linux Archive > Debian > Debian Kernel

 
 
LinkBack Thread Tools
 
Old 12-14-2008, 11:15 PM
maximilian attems
 
Default Bug#504043: closed by maximilian attems ( initramfs: bail to shell on error: insecure default)

On Mon, Dec 15, 2008 at 01:03:34AM +0100, Mario 'BitKoenig' Holbe wrote:
>
> Well, it does, for example, easily happen on SATA only systems when you
> plug an USB stick in, since the stick becomes sda.

that is a flaw of not using UUID in the fstab.

yes i know d-i should have fixed that long ago,
anyway device names are *not* stable

> Well, it's finally your decision. No offense meant, for me it was just
> important to warn about the security flaw in a documented manner. Now I
> can lean back and wait having a clear conscience
> Just try to keep in mind that lots of past an present security flaws are
> simply side-effects of having user-"friendly" insecure defaults.

having physical access to your box is unsecure.


--
maks





--
To UNSUBSCRIBE, email to debian-kernel-REQUEST@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org
 

Thread Tools




All times are GMT. The time now is 04:59 PM.

VBulletin, Copyright ©2000 - 2014, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO ©2007, Crawlability, Inc.
Copyright 2007 - 2008, www.linux-archive.org