RFR: 8307977: jcmd and jstack broken for target processes running with elevated capabilities

Bernd Eckenfels ecki at zusammenkunft.net
Tue Jan 30 16:25:53 UTC 2024


Is that actually safe to allow low priveledged user context to attach and control to a higher prived? It can at least overwrite files, but probably also inject code? On the native level a ptrace(2) would probably not be allowed.

Gruß
Bernd
— 
https://bernd.eckenfels.net


More information about the serviceability-dev mailing list