On Wed 2014-02-26 15:11:10, Matthew Garrett wrote: > uswsusp allows a user process to dump and then restore kernel state, which > makes it possible to modify the running kernel. Disable this if > trusted_kernel is true. > > Signed-off-by: Matthew Garrett <matthew.garrett@xxxxxxxxxx> It can also enter S3 etc... And dumping the kernel state should not be a problem, right? Only restoring is.... Pavel -- (english) http://www.livejournal.com/~pavelmachek (cesky, pictures) http://atrey.karlin.mff.cuni.cz/~pavel/picture/horses/blog.html -- To unsubscribe from this list: send the line "unsubscribe linux-efi" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html