Merge pull request #47 from madaidan/msr

Blacklist CPU MSRs
This commit is contained in:
Patrick Schleizer 2019-12-22 15:26:07 +00:00 committed by GitHub
commit bce02ffdc0
No known key found for this signature in database
GPG key ID: 4AEE18F83AFDEB23
2 changed files with 6 additions and 0 deletions

3
debian/control vendored
View file

@ -103,6 +103,9 @@ Description: enhances misc security settings
/lib/systemd/system/hide-hardware-info.service
/lib/systemd/system/user@.service.d/sysfs.conf
/etc/hide-hardware-info.d/30_default.conf
.
* The MSR kernel module is blacklisted to prevent CPU MSRs from being
abused to write to arbitrary memory.
.
Improve Entropy Collection
.