Managing Security and Kernel Updates

There are two levels of kernel development: the stock kernel written by the kernel developers for the Linux Kernel Organization and any additional development being done by the distribution-specific developers. They may be adding features that are specific and necessary to their distribution. Either of those development efforts could introduce vulnerabilities.

When updating a kernel, it’s best to make sure any existing working kernel is retained on your systems. If there is a problem with the updated kernel, those systems will still be bootable and available with the older working kernel. In general, that is easiest to put into effect with the binary kernels built by the developers of a distribution. Because ...

Get Security Strategies in Linux Platforms and Applications, 3rd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.