Ubuntu should come with some limits (ulimit)

Bug #81631 reported by Jonh Wendell
254
Affects Status Importance Assigned to Milestone
pam (Ubuntu)
New
Undecided
Unassigned

Bug Description

Binary package hint: libpam-modules

In order to prevent some malicious instructions, Ubuntu should come with some limits in /etc/security/limits.conf.

It's easy to a new user run a command like that described in http://en.wikipedia.org/wiki/Fork_bomb, instructed by a malicious user, and have to reboot your system.

In that case, number of process should be set. I don't know what is the right number, 500, 1000? But i guess it should be exist in a default installation.

The same sort of behavior applies to memory, number of files, etc.

I let to the Security Team the task to find out the right numbers. ;)

Revision history for this message
Áron Sisak (asisak) wrote :

Marked as duplicate of #14505.

To post a comment you must log in.
This report contains Public Security information  
Everyone can see this security related information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.