16 Feb
2005
16 Feb
'05
21:51
Disabling /proc wont stop the chroot being escaped, though it might rule out certain methods. I used the power of Google to find an example of how you can break out of a Chroot using a double "chdir". They may well be other pages out there detailing other methods. Or maybe there is only the "chdir" method. /shrug
I read this example, but I think it couldn't work in my case. The hole chroot-jail is an isoimage where no further files or directories could be created. The only wrtitable directories like "tmp" and "var" ar mounted "noexec" and the are no executables in the Chroot-jail to remount partitions or chroot to another directory. Am I right or did I miss something? cu Kai