| Date | Wed, 31 Oct 2012 15:56:35 +0000 | | From | Matthew Garrett <> | | Subject | Re: [RFC] Second attempt at kernel secure boot support |
| |
1) Gain root. 2) Modify swap partition directly. 3) Force reboot. 4) Win.
Root should not have the ability to elevate themselves to running arbitrary kernel code. Therefore, the above attack needs to be impossible.
-- Matthew Garrett | mjg59@srcf.ucam.org
|