[grsec] grsecurity 2.1.10 released for Linux 2.4.34/2.6.19.2

Brad Spengler spender at grsecurity.net
Fri Jan 12 19:11:02 EST 2007


grsecurity 2.1.10 was released today for Linux 2.4.34 and 2.6.19.2. 
Changes in this release include:

    * Fixes to PaX flag support in RBAC system
    * PaX updates for non-x86 architectures in 2.4.34 patch
    * Fix for setpgid in chroot problem reported on forums
    * Removal of randomized PIDs feature, since it provides no useful 
      additional security and wastes memory with the 2.6 kernel's pid bitmap
    * Fixed /proc usage in a chroot in 2.6 patch
    * Added admin role to generated policy from full learning

The version was incremented due to required gradm changes for the PaX 
flags.  This patch corrects the "dropped command" problem reported here 
on the mailing list and the forums.  I've also posted an official 
comment on the website regarding the alleged vulnerabilities in 
grsecurity/PaX.

-Brad
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: Digital signature
Url : http://grsecurity.net/pipermail/grsecurity/attachments/20070112/c7fd6463/attachment.pgp 


More information about the grsecurity mailing list