mirror of
https://github.com/Kicksecure/security-misc.git
synced 2025-04-27 18:56:34 -04:00
commit
bce02ffdc0
3
debian/control
vendored
3
debian/control
vendored
@ -103,6 +103,9 @@ Description: enhances misc security settings
|
|||||||
/lib/systemd/system/hide-hardware-info.service
|
/lib/systemd/system/hide-hardware-info.service
|
||||||
/lib/systemd/system/user@.service.d/sysfs.conf
|
/lib/systemd/system/user@.service.d/sysfs.conf
|
||||||
/etc/hide-hardware-info.d/30_default.conf
|
/etc/hide-hardware-info.d/30_default.conf
|
||||||
|
.
|
||||||
|
* The MSR kernel module is blacklisted to prevent CPU MSRs from being
|
||||||
|
abused to write to arbitrary memory.
|
||||||
.
|
.
|
||||||
Improve Entropy Collection
|
Improve Entropy Collection
|
||||||
.
|
.
|
||||||
|
3
etc/modprobe.d/msr.conf
Normal file
3
etc/modprobe.d/msr.conf
Normal file
@ -0,0 +1,3 @@
|
|||||||
|
# Blacklist CPU MSRs as they can be abused to write to
|
||||||
|
# arbitrary memory.
|
||||||
|
install msr /bin/false
|
Loading…
x
Reference in New Issue
Block a user