[TOOL] Plash - a Linux Sandbox



The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com
- - promotion

The SecuriTeam alerts list - Free, Accurate, Independent.

Get your security news from a reliable source.
http://www.securiteam.com/mailinglist.html

- - - - - - - - -



Plash - a Linux Sandbox
------------------------------------------------------------------------


SUMMARY



DETAILS

Plash is a sandbox for running GNU/Linux programs with minimum privileges.
It is suitable for running both command line and GUI programs. It can
dynamically grant Gtk-based GUI applications access rights to individual
files that you want to open or edit. This happens transparently through
the Open/Save file chooser dialog box, by replacing GtkFileChooserDialog.
Plash virtualizes the file namespace and provides per-process/per-sandbox
namespaces. It can grant processes read-only or read-write access to
specific files and directories, mapped at any point in the filesystem
namespace. It does not require modifications to the Linux kernel.


ADDITIONAL INFORMATION

The information has been provided by <mailto:mrs@xxxxxxxxxxxxxxxxx> Mark
Seaborn.
The original article can be found at: <http://plash.beasts.org/>
http://plash.beasts.org/



========================================


This bulletin is sent to members of the SecuriTeam mailing list.
To unsubscribe from the list, send mail with an empty subject line and body to: list-unsubscribe@xxxxxxxxxxxxxx
In order to subscribe to the mailing list, simply forward this email to: list-subscribe@xxxxxxxxxxxxxx


====================
====================

DISCLAIMER:
The information in this bulletin is provided "AS IS" without warranty of any kind.
In no event shall we be liable for any damages whatsoever including direct, indirect, incidental, consequential, loss of business profits or special damages.



Relevant Pages

  • [TOOL] Fast SYN Scanner (libnet, libpcap)
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... struct bpf_program cfilter; ... const unsigned char *packet; ... In no event shall we be liable for any damages whatsoever including direct, indirect, incidental, consequential, loss of business profits or special damages. ...
    (Securiteam)
  • [EXPL] SamiFTPd USER buffer overflow (Exploit)
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... SamiFTPd does not validate user input allowing attackers to execute ... call esp ... In no event shall we be liable for any damages whatsoever including direct, indirect, incidental, consequential, loss of business profits or special damages. ...
    (Securiteam)
  • [NT] NetFile FTP Denial of Service (Nonexisting Username)
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... multi-threaded FTP/HTTP server combined, featuring automatic virtual ... * Net File version 6.5.1 and prior ... In no event shall we be liable for any damages whatsoever including direct, indirect, incidental, consequential, loss of business profits or special damages. ...
    (Securiteam)
  • [TOOL] P0f - Passive OS Fingerprinting Tool
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... Machines that connect to your box, ... Official SYN+ACK fingerprinting support ... In no event shall we be liable for any damages whatsoever including direct, indirect, incidental, consequential, loss of business profits or special damages. ...
    (Securiteam)
  • [EXPL] TinyWeb Server DoS Exploit
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... The information in this bulletin is provided "AS IS" without warranty of any kind. ... In no event shall we be liable for any damages whatsoever including direct, indirect, incidental, consequential, loss of business profits or special damages. ...
    (Securiteam)