[Bug 59254] New: When hardened by net.core.bpf_jit_harden = 2, wine
http://bugs.winehq.org/show_bug.cgi?id=59254 Bug ID: 59254 Summary: When hardened by net.core.bpf_jit_harden = 2, wine Product: Wine Version: 10.0 Hardware: x86-64 OS: Linux Status: UNCONFIRMED Severity: normal Priority: P2 Component: -unknown Assignee: wine-bugs@list.winehq.org Reporter: sgk0kcsowgkcc48sk4wsgwossos0g4gw@ai.notifier.in Distribution: --- Many online hardening guides tell you to set 2 as "net.core.bpf_jit_harden" sysctl value. Unfortunately, after I set that many EXE files started misbehaving: kernel: ptrace attach of "C:\...\x5cGame.exe"[998022] was attempted by "/usr/lib/wine/wineserver64 -p0"[997872] I had a hard time narrowing down the problem. ## Suggestion If this happens, display "Set net.core.bpf_jit_harden to 1 or 0" dialog or journal log. -- Do not reply to this email, post in Bugzilla using the above URL to reply. You are receiving this mail because: You are watching all bug changes.
http://bugs.winehq.org/show_bug.cgi?id=59254 Li Yuan <sgk0kcsowgkcc48sk4wsgwossos0g4gw@ai.notifier.in> changed: What |Removed |Added ---------------------------------------------------------------------------- Summary|When hardened by |When hardened by |net.core.bpf_jit_harden = |kernel.yama.ptrace_scope = |2, wine |2 -- Do not reply to this email, post in Bugzilla using the above URL to reply. You are receiving this mail because: You are watching all bug changes.
http://bugs.winehq.org/show_bug.cgi?id=59254 --- Comment #1 from Li Yuan <sgk0kcsowgkcc48sk4wsgwossos0g4gw@ai.notifier.in> --- My mistake; NOT: net.core.bpf_jit_harden CORRECT: kernel.yama.ptrace_scope -- Do not reply to this email, post in Bugzilla using the above URL to reply. You are receiving this mail because: You are watching all bug changes.
http://bugs.winehq.org/show_bug.cgi?id=59254 --- Comment #2 from Li Yuan <sgk0kcsowgkcc48sk4wsgwossos0g4gw@ai.notifier.in> --- Actually why not use `setcap` when installing/upgrading wine? Many hardened users have same problem so why not do something in install script? See: https://askubuntu.com/questions/146160/what-is-the-ptrace-scope-workaround-f... -- Do not reply to this email, post in Bugzilla using the above URL to reply. You are receiving this mail because: You are watching all bug changes.
participants (1)
-
WineHQ Bugzilla