chrome exec with cloned fs denial

Discuss usability issues, general maintenance, and general support issues for a grsecurity-enabled system.

chrome exec with cloned fs denial

Postby Dwokfur » Mon Sep 12, 2011 1:06 am

How am I supposed to get rid of this to start chromium?
kernel: grsec: (atoth:U:/usr/lib/chromium-browser/chrome_sandbox) denied exec with cloned fs of /usr/lib/chromium-browser/chrome by...

Thanks:
Dw.
Dwokfur
 
Posts: 99
Joined: Tue Jun 08, 2004 10:07 am

Re: chrome exec with cloned fs denial

Postby Dwokfur » Mon Sep 12, 2011 2:13 am

According to the sources I should relax ptrace restrictions on the subject.
I haven't started using chromium, but I've already started to dislike it. There is a setuid process, which tries to ptrace. Why? Is it the intended behavior? It's scary.
Anyone using chromium with grsec?
Dwokfur
 
Posts: 99
Joined: Tue Jun 08, 2004 10:07 am

Re: chrome exec with cloned fs denial

Postby LSD » Mon Sep 12, 2011 3:00 am

I bet this have something to do with sandbox ;)
LSD
 
Posts: 3
Joined: Sat Sep 03, 2011 11:16 am


Return to grsecurity support