[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <20070621214052.GB24218@faui01.informatik.uni-erlangen.de>
Date: Thu, 21 Jun 2007 23:40:52 +0200
From: Johannes Schlumberger <spjsschl@...d.informatik.uni-erlangen.de>
To: Arjan van de Ven <arjan@...radead.org>
Cc: Alexander Wuerstlein <snalwuer@....informatik.uni-erlangen.de>,
linux-kernel@...r.kernel.org, arw@....name
Subject: Re: [PATCH] Check files' signatures before doing suid/sgid [2/4]
Hi,
> > If a process uses read() it needs some executable and writable memory. We do
> > check for this in mprotect(). There is a problem with the i386-architecture,
> > because it allows execution of any readable page (except with newer
> > processors). But beyond that ugliness of i386, it should not be possible to
> > execute anything without us noticing it (hopefully).
>
> welcome to mprotect() where the app can just change the permissions
We have mprotect covered. If a process tries to mprotect() some pages
executable, he had writable before, it is no longer trusted in our current
implementation.
We are beginning to feel like poeple do not look at our patches, because we
screwed up the msg-id, so our Patches are not visible as one clean thread. Sorry
for that.
regards,
Johannes
--
Johannes Schlumberger Department of Computer Science IV
Martensstrasse 1 D-91058 Erlangen Germany University of Erlangen-Nuremberg
http://wwwcip.informatik.uni-erlangen.de/~spjsschl
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@...r.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/
Powered by blists - more mailing lists