Re: predictable IP ID

Alan Cox (alan@lxorguk.ukuu.org.uk)
Mon, 4 Oct 1999 16:11:33 +0100 (BST)


> Except that I construct attacks to use massive amounts of AVL tree
> space. Very easily in fact. On something like an appliance with
> 8Mb of RAM that makes the AVL setup a non solution and something
> better is needed
>
> It stands to argue that the same can be done for vm_area_structs's, so
> why don't we punt those from the mm subsystem?

1. Its a local not a remote attack
2. The folks trying to make Linux totally bulletproof to local attack
are accounting vm_area_structs

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.rutgers.edu
Please read the FAQ at http://www.tux.org/lkml/