Re: Use-after-free in pte_chain in 2.6.0-test11

From: William Lee Irwin III
Date: Sat Dec 13 2003 - 17:35:28 EST


On Sat, Dec 13, 2003 at 02:13:20PM -0800, William Lee Irwin III wrote:
>> CONFIG_DEBUG_PAGEALLOC should have oopsed this...

On Sat, Dec 13, 2003 at 11:32:08PM +0100, Petr Vandrovec wrote:
> Maybe pte_chain is too small to get unmapped (it is 128 bytes here)? Or it is
> really hardware bug :-(

The alignment flags prevent it.

Anyhow, 6a vs. 5a/5b looks like a bitflip...


-- wli
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/