Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Security Problems with Symbolic Links in UNIX File Systems

SNIAVideo via YouTube

Overview

Explore a technical conference talk from the Storage Developer Conference 2022 that delves into the security vulnerabilities and design flaws introduced by symbolic links in the UNIX Filesystem API. Learn about CVE-2021-20316 and how it exposed fundamental problems with symbolic links that originated in 4.2BSD Unix from U.C. Berkeley. Discover the security implications, necessary API patches, and potential solutions for a more secure Linux future. Google/Samba Team member Jeremy Allison explains how to identify and address symbolic link security issues, implement proper code fixes, and leverage the latest Linux innovations to mitigate these vulnerabilities. Gain practical insights into filesystem security, symbolic link management, and modern Linux security features during this 54-minute presentation.

Syllabus

SDC2022 – Symbolic Links Considered Harmful

Taught by

SNIAVideo

Reviews

Start your review of Security Problems with Symbolic Links in UNIX File Systems

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.