Ubuntu 20.10 Moving Ahead In Restricting Access To dmesg

Written by Michael Larabel in Ubuntu on 3 July 2020 at 01:18 AM EDT. 20 Comments
UBUNTU
Following the discussions last month over restricting access to dmesg / kernel logs on Ubuntu in matching the behavior of other Linux distributions for better security practices, Ubuntu 20.10 indeed is moving forward with these plans where dmesg access would require root privileges.

In recent times more Linux distributions have been restricting access to dmesg over the possibility of kernel addresses being leaked or other potentially sensitive bits while as it stands now on Ubuntu there is free reign on multi-user systems to have unprivileged users read dmesg output.

Canonical's Seth Forshee commented their security team is in agreement with this work and they have made the change for their Linux 5.7/5.8 kernel trees. The Linux 5.7~5.8 kernel update will hit the Ubuntu 20.10 development repository in the next few weeks. CONFIG_SECURITY_DMESG_RESTRICT is being set to enable this restriction.
Related News
About The Author
Michael Larabel

Michael Larabel is the principal author of Phoronix.com and founded the site in 2004 with a focus on enriching the Linux hardware experience. Michael has written more than 20,000 articles covering the state of Linux hardware support, Linux performance, graphics drivers, and other topics. Michael is also the lead developer of the Phoronix Test Suite, Phoromatic, and OpenBenchmarking.org automated benchmarking software. He can be followed via Twitter, LinkedIn, or contacted via MichaelLarabel.com.

Popular News This Week