Re: [PATCH] kernel 2.6.24.1 still vulnerable to the vmsplice local root exploit

!MAILaRCHIVE_VOTE_RePLACE
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
To: Bastian Blank <bastian@...>, <linux-kernel@...>
Date: Sunday, February 10, 2008 - 9:48 am

On Feb 10, 2008 12:22 PM, Bastian Blank <bastian@waldi.eu.org> wrote:

As far as i can see, at least on x86 and x86_64 the first argument to
access_ok : (VERIFY_READ|VERIFY_WRITE) is ignored.
Also even if it is used on different arch, using WRITE instead of READ
should be safe because WRITE is a superset of READ.

You are right that it only catches the first entry.

--Niki
--
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
Re: [PATCH] kernel 2.6.24.1 still vulnerable to the vmsplice..., Niki Denev, (Sun Feb 10, 9:48 am)