ovigia is a user on mastodon.host. You can follow them or interact with them if you have an account anywhere in the fediverse. If you don't, you can sign up here.
ovigia @ovigia

[Systemd v239 released [LWN.net]](lwn.net/Articles/758128/)

"Systemd v239 has been released with a long list of changes; click below for the full set. "A new system.conf setting NoNewPrivileges= is now available which may be used to turn off acquisition of new privileges system-wide (i.e. set Linux' PR_SET_NO_NEW_PRIVS for PID 1 itself, and thus also for all its children). Note that turning this option on means setuid binaries and file system capabilities lose their special powers. While turning on this option is a big step towards a more secure system, [b]doing so is likely to break numerous pre-existing UNIX tools, in particular su and sudo[/b]." "

· Web · 0 · 0