The tlcompadd command included with HP Secure OS Software for Linux can be used to add named compartments, used to restrict the privileges of system processes. A vulnerability has been reported in some versions of this utility. Reportedly, Mandatory Access Control (MAC) restrictions on the tlcompadd utility are insufficient. Exploitation may allow a local user to gain unauthorized access to files.
The tlcompadd command included with HP Secure OS Software for Linux can be used to add named compartments, used to restrict the privileges of system processes. A vulnerability has been reported in some versions of this utility. Reportedly, Mandatory Access Control (MAC) restrictions on the tlcompadd utility are insufficient. Exploitation may allow a local user to gain unauthorized access to files.