recognition of Rowhammer

By: Linus Torvalds (torvalds.delete@this.linux-foundation.org),
Room: Moderated Discussions
Jeff S. (fakity.delete@this.fake.com) on March 5, 2019 6:14 am wrote:
>
> On that note, if you're lurking out there Linus, would it be remotely realistic to hope for a
> new CAP_SYS_PAGEMAP in the mainline? (implied by CAP_SYS_ADMIN for backwards compat I guess)

We don't really end up doing new CAP_xyz capabilities, the maintenance is too painful, and nobody ends up using capabilities correctly anyway.

You're much better off having some trivial suid binary that opens up the pagemap file for you, and then drops privileges. That kind of "I'm _aware_ of my privileges" model tends to be both simpler and more secure than the "oh, I depend on this obscure privilege thing that nobody even thinks about", and that you then leak by mistake.

Linus
< Previous Post in ThreadNext Post in Thread >
Thread (32 posts)
TopicPosted ByPosted
SPOILER: attack on store forwardinghobold
  sounds like non-issueMichael S
    recognition of RowhammerJeff S.
      recognition of RowhammerLinus Torvalds
        recognition of RowhammerJeff S.
          recognition of RowhammerLinus Torvalds
      recognition of RowhammerTravis Downs
  Is hiding th V-P mapping even a good goal?Travis Downs
    Is hiding th V-P mapping even a good goal?Jeff S.
      Is hiding th V-P mapping even a good goal?Howard Chu
        Is hiding th V-P mapping even a good goal?Doug S
          Is hiding th V-P mapping even a good goal?Michael S
            Is hiding th V-P mapping even a good goal?Howard Chu
              Is hiding th V-P mapping even a good goal?Aaron Spink
                Is hiding th V-P mapping even a good goal?Jeff S.
                Is hiding th V-P mapping even a good goal?Howard Chu
                  Is hiding th V-P mapping even a good goal?Howard Chu
                  Is hiding th V-P mapping even a good goal?Michael S
              O.T. merits of STT-MRAMMichael S
              Not ready yet (endurance)David Kanter
                Not ready yet (endurance)David Kanter
                  Not ready yet (endurance)Jeff S.
                    Not ready yet (endurance)David Kanter
                      Not ready yet (endurance)Michael S
                        Not ready yet (endurance)Maynard Handley
                          MRAM perspectivesMichael S
                            MRAM perspectivesKevin G
                              MRAM perspectivestarlinian
                                MRAM perspectiveswumpus
                      Not ready yet (endurance)wumpus
                        Not ready yet (endurance)David Kanter
            Is hiding th V-P mapping even a good goal?anon