Re: [PATCH] kernel: make /proc/kallsyms mode 400 to reduce ease of attacking

Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
From: Ingo Molnar
Date: Thursday, November 11, 2010 - 12:05 am

* H. Peter Anvin <hpa@zytor.com> wrote:


Yeah - but it happens quite often that the scope of the vulnerability only allows 
absolute addresses. In fact it's a pretty common case: basically most derefs into 
attacker-controlled data pointers are like that.

Thanks,

	Ingo
--
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
Re: [PATCH] kernel: make /proc/kallsyms mode 400 to reduce ..., Ingo Molnar, (Thu Nov 11, 12:05 am)