Re: arm64/mm: Remove hack in mmap randomize layout

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hi,

Le lundi 13 juillet 2015 à 17:07 +0200, Matthias Brugger a écrit :
> 
> Commit d6c763afab14 "arm64/mm: Remove hack in mmap randomize layout" 
> fixes a security issue which reduces the entropy for mmap base 
> address by half [1].
> A attempt to guess where the stack is mapped via brute-force needs 
> just half the attempts.
> 
> I found this patch was added to v3.19-rc1 but should be added as well 
> to:
> v3.18, v3.14, v3.12 and v3.10
> 

I agree.

The issue fixed by commit d6c763afab142a85e4770b4bc2a5f40f256d5c5d is
present since v3.7-rc1.

> [1] http://hmarco.org/bugs/linux-ASLR-reducing-mmap-by-half.html

Regards.

-- 
Yann Droneaud
OPTEYA


--
To unsubscribe from this list: send the line "unsubscribe stable" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at  http://vger.kernel.org/majordomo-info.html



[Index of Archives]     [Linux Kernel]     [Kernel Development Newbies]     [Linux USB Devel]     [Video for Linux]     [Linux Audio Users]     [Yosemite Hiking]     [Linux Kernel]     [Linux SCSI]