debcrafters-packages team mailing list archive
-
debcrafters-packages team
-
Mailing list archive
-
Message #03054
[Bug 2114945] [NEW] block less common filesystems by default
*** This bug is a security vulnerability ***
You have been subscribed to a public security bug:
The Linux kernel supports a lot of different filesystem types. This is
cool, it's part of what makes Linux so flexible and helped bring Linux
to the mainstream. However, quality of filesystem implementations varies
wildly and the upstream kernel community doesn't consider flaws in
filesystems to be security issues: https://lore.kernel.org/linux-
fsdevel/20250407-biegung-furor-e7313ca9d712@brauner/
Ubuntu has decided to make it easy for users to mount filesystems, for
better or for worse.
The filesystems that have had less dedicated bug hunting bring
significant risk to Ubuntu users. We can make it harder to mount these
filesystem types without affecting most Ubuntu users through some simple
module blocklisting. System administrators can still enable these other
filesystem types with relatively easy efforts and everyone else will
have reduced risk of ring 0 privilege escalation issues.
** Affects: udisks2 (Ubuntu)
Importance: Undecided
Status: Triaged
** Tags: dcr-incoming patch
--
block less common filesystems by default
https://bugs.launchpad.net/bugs/2114945
You received this bug notification because you are a member of Debcrafters packages, which is subscribed to udisks2 in Ubuntu.
References