Ubuntu 11.04 Lets You 'Test Drive' Applications Without Installing
lifehacker.com.au
lifehacker.com.au
A lot of people hate on the fact that X is network transparent, but this just shows why it's more important now than ever.
This brings me closer to the future of having one simple daemon installed on all my machines and then simply having a hardware-enabled remote client netbook.
With the exception of one customer with whom we've worked with continuously for 7 years, every single Citrix deployment we've ever looked at has been exploitable to some extent.
[1] - Courtesy of the awesome http://goscomb.net - they're not cheap but damn they're good for UK connectivity.
My point was simply that this feature carries with it some very large security implications. I'm sure the people developing it are aware of that and will do their best to mitigate any potential issues.
Linux Kernel exploits tend to 'return' into root, the vulnerabilities allow them to execute in ring 0 (on x86) which gives them full direct access to the hardware. Think trojaned firmware updates and that's the kind of capability we're talking about, all because users can load and interact with drivers that haven't been maintained for years.
What potential damage do you imagine could be done by rooting them?