[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Xen-devel] [PATCH v6 01/19] common/symbols: Export hypervisor symbols to privileged guest

At 09:05 +0100 on 16 May (1400227507), Jan Beulich wrote:
> >>> On 13.05.14 at 17:53, <boris.ostrovsky@xxxxxxxxxx> wrote:
> > Export Xen's symbols as {<address><type><name>} triplet via new 
> > XENPF_get_symbol
> > hypercall
> I already voiced my reservations on a very early version of this series.
> While I can see the need of exposing these internals, I also see the
> potential for abuse. I'd clearly want at least one other common code
> maintainer's opinion here; sadly you didn't properly Cc them all (done
> now).

Sorry, didn't see that until my post-hackathon sweep of Xen-devel.
I'm not worried about exposing hypervisor symbols to privileged
guests.  In many cases dom0 will already have access to the binary
from /boot, and in any case with access to the version strings &
dmesg, they're not terribly hard to guess.


Xen-devel mailing list



Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.