Commit Graph

892 Commits

Author SHA1 Message Date
8e40c10c31 comment 2024-07-26 08:31:17 -04:00
f2c9c2f5d1 output 2024-07-26 08:26:16 -04:00
2b40ea75e9 cleanup 2024-07-26 08:24:23 -04:00
6f0551b944 refactoring 2024-07-26 08:23:54 -04:00
aac450f808 refactoring 2024-07-26 08:22:04 -04:00
30f46790a4 use end of options whenever possible 2024-07-26 08:21:21 -04:00
95722d6d79 use long option name 2024-07-26 08:13:33 -04:00
19f131c742 code simplification
https://github.com/Kicksecure/security-misc/pull/251
2024-07-26 08:07:08 -04:00
9694cf0cd1 output 2024-07-26 07:43:59 -04:00
652a06c8e9 Only print SUID or SGID values when set 2024-07-25 12:37:21 +02:00
3b8a3f9b83 Unduplicate stat call 2024-07-25 12:20:16 +02:00
ed3336694c Provide the option to immediately reboot on a kernel panics 2024-07-25 10:28:27 +10:00
3926b91dcf Add documentation on sysctl kernel.panic_on_oops=1 2024-07-25 10:26:23 +10:00
f699eb02a2 Set sysctl fs.binfmt_misc.status=0 2024-07-25 10:11:33 +10:00
9231f05891 todo 2024-07-24 13:31:49 -04:00
4cc1289e89 output 2024-07-24 13:30:30 -04:00
10c73b326f fix delimiter parsing 2024-07-24 12:07:26 -04:00
a16dd8474b sanity test 2024-07-24 11:50:30 -04:00
cc2b335ee6 cleanup 2024-07-24 11:48:32 -04:00
6cadc70a96 output 2024-07-24 11:47:52 -04:00
cda0d26af7 cannot use NULL inside a bash variable
use custom delimiter instead
2024-07-24 11:45:13 -04:00
4a5312b3a9 output 2024-07-24 11:27:51 -04:00
3bf1f26c0b downgrade warning of non-existing folders to info
to avoid all users by default getting a warning for expected non-existing folders
2024-07-24 11:20:26 -04:00
151ca659a9 output 2024-07-24 11:19:15 -04:00
c9fd2ceb61 downgrade warning of non-existing files to info
to avoid all users by default getting a warning for expected non-existing files
2024-07-24 11:13:35 -04:00
721392901b remove duplicate test 2024-07-24 11:12:39 -04:00
9712b5b4e3 output 2024-07-24 11:12:18 -04:00
00911df5c1 modify call of stat to use NUL delimiter
for more robust string parsing
2024-07-24 11:10:56 -04:00
d536683511 local clean_output_prefix clean_output 2024-07-24 11:03:28 -04:00
a6e517736b local stat_output 2024-07-24 11:02:25 -04:00
ced02fb9e0 add sanity test for file_name output from stat 2024-07-24 11:01:24 -04:00
b9dfe70a01 check first if file_name is empty 2024-07-24 10:58:05 -04:00
1cbda79981 check first if array is empty before parsing further 2024-07-24 10:57:13 -04:00
a077ae54ea modify call of stat to use NUL delimiter
for more robust string parsing
2024-07-24 10:56:08 -04:00
7200e9bd8c output 2024-07-24 09:15:02 -04:00
1b6161c2dc Merge remote-tracking branch 'ben-grande/fuzz' 2024-07-24 09:13:48 -04:00
88c88187f2 Re-enable (default) secure_redirects for ICMP redirect messages 2024-07-24 17:26:50 +10:00
8be21b6eff Handle newlines in file names 2024-07-23 19:36:12 +02:00
aa99de68d3 Log output with defined levels 2024-07-23 18:50:16 +02:00
06fbcdac1d Prettify log messages 2024-07-23 09:55:02 +02:00
7ee1ea2cc7 Unify functions that evaluate commands 2024-07-22 17:06:07 +02:00
9c3566f524 Delimit file names with null terminator 2024-07-22 16:56:42 +02:00
a189956adc Typo 2024-07-20 20:11:09 +10:00
c4965ed838 Disable legacy framebuffer drivers
These were all previously blacklisted for over 2 years.
2024-07-20 14:55:10 +10:00
9f53a0182b undo io_uring related changes
as these should be done in a separate pull request (if apprpriate)

https://github.com/Kicksecure/security-misc/pull/244#issuecomment-2238889062
2024-07-19 07:20:59 -04:00
13cc1f0986 Clarify (future) disabling of io_uring 2024-07-18 12:25:00 +10:00
6d211faf59 Restrict unprivileged user namespaces 2024-07-18 11:04:54 +10:00
b04828f858 Disable the usage of ptrace() by all processes 2024-07-18 11:01:41 +10:00
a2e26f441b spelling 2024-07-17 11:04:03 -04:00
c8be4ac83c comment 2024-07-17 10:56:14 -04:00