[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <20151021203732.GE30729@hopstrocity>
Date: Wed, 21 Oct 2015 14:37:32 -0600
From: Tycho Andersen <tycho.andersen@...onical.com>
To: Daniel Borkmann <daniel@...earbox.net>
Cc: Kees Cook <keescook@...omium.org>, Oleg Nesterov <oleg@...hat.com>,
Alexei Starovoitov <ast@...nel.org>,
Will Drewry <wad@...omium.org>,
Andy Lutomirski <luto@...capital.net>,
Pavel Emelyanov <xemul@...allels.com>,
"Serge E. Hallyn" <serge.hallyn@...ntu.com>,
LKML <linux-kernel@...r.kernel.org>,
Linux API <linux-api@...r.kernel.org>
Subject: Re: [PATCH v8] seccomp, ptrace: add support for dumping seccomp
filters
On Wed, Oct 21, 2015 at 10:18:20PM +0200, Daniel Borkmann wrote:
> On 10/21/2015 10:12 PM, Kees Cook wrote:
> >
> >I like being really paranoid when dealing with the filters. Let's keep
> >the WARN_ON (with the "|| !filter" added) but maybe wrap it in
> >"unlikely"?
>
> Btw, the conditions inside the WARN_ON() macro would already resolve
> to unlikely().
Here's an updated patch with the !filter as well.
Thanks,
Tycho
View attachment "0001-seccomp-ptrace-add-support-for-dumping-seccomp-filte.patch" of type "text/x-diff" (6446 bytes)
Powered by blists - more mailing lists