Gentoo Archives: gentoo-hardened

From: atoth@××××××××××.hu
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] what RLIMIT_STACK mean?
Date: Mon, 10 Nov 2008 06:13:59
Message-Id: 56fdc27a3f155c58dba9c797d9965dd7.squirrel@atoth.sote.hu
In Reply to: Re: [gentoo-hardened] what RLIMIT_STACK mean? by pageexec@freemail.hu
1 I'm using the latest hardened kernel. I've switched to 2.6.27 on Sunday.
2 I have /bin/rm only in one daily cron job. And this error message is not
3 reproducible in a repetitive manner. These error messages showed up in the
4 logs once per every second months. I try to find a way to trigger it, but
5 I'm not sure about my success.
6
7 It would be good from Alex to provide his recipe for me to try out.
8
9 Regards,
10 Dwokfur
11 --
12 dr Tóth Attila, Radiológus Szakorvos jelölt, 06-20-825-8057, 06-30-5962-962
13 Attila Toth MD, Radiologist in Training, +36-20-825-8057, +36-30-5962-962
14
15 On Vas, November 9, 2008 12:44, pageexec@××××××××.hu wrote:
16 > On 9 Nov 2008 at 0:06, atoth@××××××××××.hu wrote:
17 >
18 >> Some error messages like this shows up from time to time every twice
19 >> months:
20 >> "
21 >> grsec: (root:U:/bin/rm) denied resource overstep by requesting 115310592
22 >> for RLIMIT_STACK against limit 8388608 for /[rm:32461] uid/euid:0/0
23 >> gid/egid:0/0, parent /usr/sbin/run-crons[run-crons:32446] uid/euid:0/0
24 >> gid/egid:0/0
25 >> "
26 >> That might be related to the same issue.
27 >
28 > what's your kernel version? and if it's not .27.x, can you test there as
29 > well?
30 > also can you reproduce it with even more trivial things like pwd?
31 >
32 >

Replies

Subject Author
Re: [gentoo-hardened] what RLIMIT_STACK mean? Alex Efros <powerman@××××××××××××××××××.com>