mirror of
https://github.com/Kicksecure/security-misc.git
synced 2025-05-07 18:04:57 -04:00
commit
bce02ffdc0
2 changed files with 6 additions and 0 deletions
3
debian/control
vendored
3
debian/control
vendored
|
@ -103,6 +103,9 @@ Description: enhances misc security settings
|
|||
/lib/systemd/system/hide-hardware-info.service
|
||||
/lib/systemd/system/user@.service.d/sysfs.conf
|
||||
/etc/hide-hardware-info.d/30_default.conf
|
||||
.
|
||||
* The MSR kernel module is blacklisted to prevent CPU MSRs from being
|
||||
abused to write to arbitrary memory.
|
||||
.
|
||||
Improve Entropy Collection
|
||||
.
|
||||
|
|
3
etc/modprobe.d/msr.conf
Normal file
3
etc/modprobe.d/msr.conf
Normal file
|
@ -0,0 +1,3 @@
|
|||
# Blacklist CPU MSRs as they can be abused to write to
|
||||
# arbitrary memory.
|
||||
install msr /bin/false
|
Loading…
Add table
Add a link
Reference in a new issue