Linked by Thom Holwerda on Thu 9th Aug 2007 17:02 UTC, submitted by Joe User
Thread beginning with comment 262026
To read all comments associated with this story, please click here.
To read all comments associated with this story, please click here.
RE: It's my understanding ...
by zamolx3 on Thu 9th Aug 2007 20:03
in reply to "It's my understanding ..."
No, this is exploitable also on Uniprocessor systems.
Read the paper/slides before posting comments.
http://www.watson.org/~robert/2007woot/






Member since:
2006-04-25
.. that this is only exploitable on multiprocessor systems.
Also, it seems that there is a solution available:
There is a straight forward solution for this problem. The initial
prototype of Systrace had a look-aside buffer in the kernel for
copyin. I told Robert about this, not sure if he mentioned that in
his paper or not. There obviously would be some associated
performance impacts. (Niels Provos, on the OpenBSD mailing list)
Still pretty serious though.