Re: [PATCH 00/11] x86: Supervisor Mode Access Prevention

From: Ingo Molnar
Date: Fri Sep 21 2012 - 16:08:43 EST



* Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx> wrote:

> On Fri, Sep 21, 2012 at 12:43 PM, H. Peter Anvin <hpa@xxxxxxxxxxxxxxx> wrote:
>
> > Supervisor Mode Access Prevention (SMAP) is a new security
> > feature disclosed by Intel in revision 014 of the Intel®
> > Architecture Instruction Set Extensions Programming
> > Reference:
>
> Looks good.
>
> Did this find any bugs, btw? We've had a few cases where we
> forgot to use the proper user access function, and code just
> happened to work because it all boils down to the same thing
> and never got any page faults in practice anyway..

The 4g:4g patch sweeped out most of the historic ones - so what
we have are perhaps newer bugs (but those should be pretty rare,
most new features are cross-arch).

Thanks,

Ingo
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/