On Sun, 2011-10-23 at 11:52 -0700, Roland McGrath wrote: > > But that's no reason for the kernel to *allow* the mapping. > > I don't have a problem with that. I feel like, and it's just a very vague feeling, that the PROT bits didn't matter to the kernel. It would still happily execute stuff on page 0 even without PROT_EXEC at some point in the past. I'm probably totally off base, and I could test it, but I sort of feel like I remember something like that.... If that's the case, NULL pointer kernel bugs won't be caught if they happen while these are mapped by your program... -- This message was distributed to subscribers of the selinux mailing list. If you no longer wish to subscribe, send mail to majordomo@xxxxxxxxxxxxx with the words "unsubscribe selinux" without quotes as the message.