Re: thoughts on kernel security issues

From: Matt Mackall (mpm_at_selenic.com)
Date: 01/13/05

  • Next message: Matt Mackall: "Re: thoughts on kernel security issues"
    Date:	Wed, 12 Jan 2005 23:25:58 -0800
    To: Andrew Morton <akpm@osdl.org>
    
    

    On Wed, Jan 12, 2005 at 10:54:12PM -0800, Andrew Morton wrote:
    > William Lee Irwin III <wli@holomorphy.com> wrote:
    > >
    > > Most of the local DoS's I'm aware of are memory management -related,
    > > i.e. user- triggerable proliferation of pinned kernel data structures.
    >
    > Well. A heck of a lot of the DoS opportunities we've historically seen
    > involved memory leaks, deadlocks or making the kernel go oops or BUG with
    > locks held or with kernel memory allocated.

    I think we can probably exclude root-only local DoS from the full
    embargo treatment for starters. The recent /dev/random sysctl one was
    in that category.

    I can imagine some local DoS bugs that are worth keeping a lid on for
    a bit. Classic F00F bug may have been a good example. But hole in an
    arbitrary driver may not.

    -- 
    Mathematics is the supreme nostalgia of our time.
    -
    To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
    the body of a message to majordomo@vger.kernel.org
    More majordomo info at  http://vger.kernel.org/majordomo-info.html
    Please read the FAQ at  http://www.tux.org/lkml/
    

  • Next message: Matt Mackall: "Re: thoughts on kernel security issues"

    Relevant Pages

    • Re: [PATCH 1/2] LogFS proper
      ... Please comment the structure with kernel doc comments and avoid the tail ... Do enums have a significant ... Also the BUG itself will give you enough clue where it happened, ... which leaves only the prepared filesystem image to worry about. ...
      (Linux-Kernel)
    • Re: 2.6.25 crash: EIP: [] xfrm_output_resume+0x64/0x100 ss:esp 0068:c03a1e5c
      ... please include in all bug reports as ... This linux box is an ipsec gateway and ... # Linux kernel version: 2.6.25 ... # PCI IDE chipsets support ...
      (Linux-Kernel)
    • Server Crash (2.6.17-1.2157)- BUG: soft lockup detected on CPU#3!
      ... I just installed Fedora Core Kernel 2.6.17-1.2157_FC5smp and immediately got a "BUG: soft lockup detected on CPU#3!", I've never had this on any other kernel version before, but on my desk top PC and now this server with this specific kernel. ... isg-dev7 kernel: CPU: 3 ... kernel BUG at include/linux/list.h:185! ... MEM window: dd200000-dd3fffff ...
      (Fedora)
    • Re: [Bug #12660] Linux 2.6.28.7 freezing on a 32-bits x86 Thinkpad T43p
      ... this bug is very weird and makes little sense. ... unable to handle kernel NULL pointer dereference at 00000000 ... # AX.25 network device drivers ...
      (Linux-Kernel)
    • please pull from the trivial tree
      ... Fix spelling in E1000_DISABLE_PACKET_SPLIT Kconfig description ... +- Finding patch that caused a bug ... +Always try the latest kernel from kernel.org and build from source. ... Length of input string in bytes ...
      (Linux-Kernel)