Gentoo Archives: gentoo-hardened

From: atoth@××××××××××.hu
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] what RLIMIT_STACK mean?
Date: Sat, 08 Nov 2008 23:06:07
Message-Id: c2125bcb7fde59cdb77b1b8de3cef95a.squirrel@atoth.sote.hu
In Reply to: Re: [gentoo-hardened] what RLIMIT_STACK mean? by pageexec@freemail.hu
1 Some error messages like this shows up from time to time every twice months:
2 "
3 grsec: (root:U:/bin/rm) denied resource overstep by requesting 115310592
4 for RLIMIT_STACK against limit 8388608 for /[rm:32461] uid/euid:0/0
5 gid/egid:0/0, parent /usr/sbin/run-crons[run-crons:32446] uid/euid:0/0
6 gid/egid:0/0
7 "
8 That might be related to the same issue.
9
10 Regards,
11 Dw.
12 --
13 dr Tóth Attila, Radiológus Szakorvos jelölt, 06-20-825-8057, 06-30-5962-962
14 Attila Toth MD, Radiologist in Training, +36-20-825-8057, +36-30-5962-962
15
16 On Szo, November 8, 2008 22:55, pageexec@××××××××.hu wrote:
17 > On 9 Nov 2008 at 0:40, Alex Efros wrote:
18 >
19 >> The problem is still here, I'm on latests hardened kernel:
20 >> 2.6.25-hardened-r8.
21 >> Not sure about version of grsec/pax patches, probably it's easier for
22 >> you
23 >> to check this, you should know where to look. :)
24 >
25 > hmm that's a bit too old kernel for us, can you try your .config with a
26 > more
27 > recent one, preferably .27.5 that spender just put up on his test page?
28 > what
29 > is really weird is that you're not seeing segfaults, only grsec's
30 > reporting,
31 > that's the part that doesn't make sense to me yet (also that noone
32 > reported
33 > similar problems so far).
34 >
35 >

Replies

Subject Author
Re: [gentoo-hardened] what RLIMIT_STACK mean? pageexec@××××××××.hu