On 6/8/20 4:40 PM, harshad shirwadkar wrote: > From what I understand, there's no alternative to having a fix in the > kernel. That's because, if the kernel is not fixed and only the > commonly used user-space apps are fixed, I can always write a new > program to break the kernel. So, as mentioned above, maybe we can make > these limits configurable via sysfs but we'll need these bound checks > in the kernel. Okay, thanks for the explanation.