not a weeb
trans rights 🏳️⚧️🏳️🌈
they/them
This also highlights the problem with a lot of communities moving to Discord, which inevitably ends up as repositories for critical information, but can’t be indexed by Google. Reddit is still valuable as a problem solving resource, and I hope they fix this API fiasco.
Mine isn’t very interesting, but sure
I have a relatively small setup, because of space and cooling constraints, but in that setup:
Everything I self host runs through Proxmox, either as a LXC container or as a RHEL 9 virtual machine. I also have a RasPi running Pi-Hole for ad blocking.
That’s a really interesting bypass; I wonder how this can be patched or mitigated considering the module is entirely loaded from memory. Short of setting noexec
on temporary directories, I can’t think of any quick short term fixes.
Edit: Re-read the blog post and looked at the Github repo for the code- looks like this is more of a proof of concept of a SELinux confine bypass, as the kernel needs to be compiled with CONFIG_SECURITY_SELINUX_DEVELOP
set. See the readme here, there’s some more notes that weren’t included in the blog post.
Not really, unless you’re a fan of the UI/UX changes.