[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Xen-ia64-devel] [PATCH][Linux] fix vulnerability of privcmd_mmap



On Thu, 2008-02-21 at 17:42 +0900, Kouya Shimura wrote:
> Hi,
> 
> empty_zero_page can be polluted by writing to a page
> through privcmd_mmap(). 
> i.e. a user program can hang a privileged domain (dom0),
> although root privilege is required.
> 
> An attached patch fixes it. resetting the VM_PFNMAP flag
> is a little bit kludge. Is there any better solution?
> 
> After this patch is applied, other patches to Qemu become
> necessary to create a HVM domain. I'll post them later.

   Applied.  Thanks,

        Alex

-- 
Alex Williamson                             HP Open Source & Linux Org.


_______________________________________________
Xen-ia64-devel mailing list
Xen-ia64-devel@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xen-ia64-devel


 


Rackspace

Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.