Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.kernel > #1317549

Re: [RFC][PATCH 0/3] Sanitization of buddy pages

Path csiph.com!news.freedyn.net!aioe.org!bofh.it!news.nic.it!robomod
From Sasha Levin <sasha.levin@oracle.com>
Newsgroups linux.kernel
Subject Re: [RFC][PATCH 0/3] Sanitization of buddy pages
Date Tue, 26 Jan 2016 07:10:01 +0100
Message-ID <qV4Zb-7Fd-5@gated-at.bofh.it> (permalink)
References <qUSEG-6QD-11@gated-at.bofh.it>
User-Agent Mozilla/5.0 (X11; Linux x86_64; rv:38.0) Gecko/20100101 Thunderbird/38.4.0
MIME-Version 1.0
Content-Type text/plain; charset=windows-1252
Content-Transfer-Encoding 7bit
X-Source-IP userp1040.oracle.com [156.151.31.81]
Sender robomod@news.nic.it
List-ID <linux-kernel.vger.kernel.org>
X-Mailing-List linux-kernel@vger.kernel.org
Approved robomod@news.nic.it
Lines 42
Organization linux.* mail to news gateway
X-Original-Cc linux-mm@kvack.org, linux-kernel@vger.kernel.org, kernel-hardening@lists.openwall.com, Kees Cook <keescook@chromium.org>, Andrey Ryabinin <ryabinin.a.a@gmail.com>
X-Original-Date Tue, 26 Jan 2016 01:05:17 -0500
X-Original-Message-ID <56A70C9D.8060102@oracle.com>
X-Original-References <1453740953-18109-1-git-send-email-labbott@fedoraproject.org>
X-Original-Sender linux-kernel-owner@vger.kernel.org
Xref csiph.com linux.kernel:1317549

Show key headers only | View raw


On 01/25/2016 11:55 AM, Laura Abbott wrote:
> Hi,
> 
> This is an implementation of page poisoning/sanitization for all arches. It
> takes advantage of the existing implementation for
> !ARCH_SUPPORTS_DEBUG_PAGEALLOC arches. This is a different approach than what
> the Grsecurity patches were taking but should provide equivalent functionality.
> 
> For those who aren't familiar with this, the goal of sanitization is to reduce
> the severity of use after free and uninitialized data bugs. Memory is cleared
> on free so any sensitive data is no longer available. Discussion of
> sanitization was brough up in a thread about CVEs
> (lkml.kernel.org/g/<20160119112812.GA10818@mwanda>)
> 
> I eventually expect Kconfig names will want to be changed and or moved if this
> is going to be used for security but that can happen later.
> 
> Credit to Mathias Krause for the version in grsecurity
> 
> Laura Abbott (3):
>   mm/debug-pagealloc.c: Split out page poisoning from debug page_alloc
>   mm/page_poison.c: Enable PAGE_POISONING as a separate option
>   mm/page_poisoning.c: Allow for zero poisoning
> 
>  Documentation/kernel-parameters.txt |   5 ++
>  include/linux/mm.h                  |  13 +++
>  include/linux/poison.h              |   4 +
>  mm/Kconfig.debug                    |  35 +++++++-
>  mm/Makefile                         |   5 +-
>  mm/debug-pagealloc.c                | 127 +----------------------------
>  mm/page_alloc.c                     |  10 ++-
>  mm/page_poison.c                    | 158 ++++++++++++++++++++++++++++++++++++
>  8 files changed, 228 insertions(+), 129 deletions(-)
>  create mode 100644 mm/page_poison.c
> 

Should poisoning of this kind be using kasan rather than "old fashioned"
poisoning?


Thanks,
Sasha

Back to linux.kernel | Previous | Next — Previous in thread | Next in thread | Find similar | Unroll thread


Thread

[RFC][PATCH 0/3] Sanitization of buddy pages Laura Abbott <labbott@fedoraproject.org> - 2016-01-25 18:00 +0100
  Re: [RFC][PATCH 0/3] Sanitization of buddy pages Sasha Levin <sasha.levin@oracle.com> - 2016-01-26 07:10 +0100
    Re: [RFC][PATCH 0/3] Sanitization of buddy pages Laura Abbott <labbott@redhat.com> - 2016-01-26 21:40 +0100
  Re: [kernel-hardening] [RFC][PATCH 0/3] Sanitization of buddy pages Mathias Krause <minipli@googlemail.com> - 2016-01-26 10:10 +0100

csiph-web