Re: [kernel-hardening] [PATCH v2 25/30] fork: Define usercopy region in thread_stack slab caches
From: Rik van Riel
Date: Wed Aug 30 2017 - 14:55:58 EST
On Mon, 2017-08-28 at 14:35 -0700, Kees Cook wrote:
> From: David Windsor <dave@xxxxxxxxxxxx>
>
> In support of usercopy hardening, this patch defines a region in the
> thread_stack slab caches in which userspace copy operations are
> allowed.
> Since the entire thread_stack needs to be available to userspace, the
> entire slab contents are whitelisted. Note that the slab-based thread
> stack is only present on systems with THREAD_SIZE < PAGE_SIZE and
> !CONFIG_VMAP_STACK.
>
Acked-by: Rik van Riel <riel@xxxxxxxxxx>
--
All rights reversedAttachment:
signature.asc
Description: This is a digitally signed message part