From mboxrd@z Thu Jan 1 00:00:00 1970 From: "Reshetova, Elena" Subject: RE: [RFC PATCH] x86/entry/64: randomize kernel stack offset upon syscall Date: Thu, 4 Apr 2019 11:41:34 +0000 Message-ID: <2236FBA76BA1254E88B949DDB74E612BA4C3BA7F@IRSMSX102.ger.corp.intel.com> References: <20190329081358.30497-1-elena.reshetova@intel.com> In-Reply-To: Content-Type: text/plain; charset="utf-8" Content-Transfer-Encoding: base64 MIME-Version: 1.0 To: Kees Cook Cc: Andy Lutomirski , Kernel Hardening , Andy Lutomirski , Josh Poimboeuf , Jann Horn , "Perla, Enrico" , Ingo Molnar , Borislav Petkov , Thomas Gleixner , Peter Zijlstra , Greg KH List-ID: IE9uIEZyaSwgTWFyIDI5LCAyMDE5IGF0IDE6MTQgQU0gRWxlbmEgUmVzaGV0b3ZhDQo+IDxlbGVu YS5yZXNoZXRvdmFAaW50ZWwuY29tPiB3cm90ZToNCj4gPiBkaWZmIC0tZ2l0IGEvYXJjaC94ODYv ZW50cnkvY29tbW9uLmMgYi9hcmNoL3g4Ni9lbnRyeS9jb21tb24uYw0KPiA+IGluZGV4IDdiYzEw NWY0N2QyMS4uMjhjYjM2ODdiZjgyIDEwMDY0NA0KPiA+IC0tLSBhL2FyY2gveDg2L2VudHJ5L2Nv bW1vbi5jDQo+ID4gKysrIGIvYXJjaC94ODYvZW50cnkvY29tbW9uLmMNCj4gPiBAQCAtMzIsNiAr MzIsMTAgQEANCj4gPiAgI2luY2x1ZGUgPGxpbnV4L3VhY2Nlc3MuaD4NCj4gPiAgI2luY2x1ZGUg PGFzbS9jcHVmZWF0dXJlLmg+DQo+ID4NCj4gPiArI2lmZGVmIENPTkZJR19SQU5ET01JWkVfS1NU QUNLX09GRlNFVA0KPiA+ICsjaW5jbHVkZSA8bGludXgvcmFuZG9tLmg+DQo+ID4gKyNlbmRpZg0K PiA+ICsNCj4gPiAgI2RlZmluZSBDUkVBVEVfVFJBQ0VfUE9JTlRTDQo+ID4gICNpbmNsdWRlIDx0 cmFjZS9ldmVudHMvc3lzY2FsbHMuaD4NCj4gPg0KPiA+IEBAIC0yNjksMTAgKzI3MywyMiBAQCBf X3Zpc2libGUgaW5saW5lIHZvaWQgc3lzY2FsbF9yZXR1cm5fc2xvd3BhdGgoc3RydWN0DQo+IHB0 X3JlZ3MgKnJlZ3MpDQo+ID4gIH0NCj4gPg0KPiA+ICAjaWZkZWYgQ09ORklHX1g4Nl82NA0KPiA+ ICsNCj4gPiArI2lmZGVmIENPTkZJR19SQU5ET01JWkVfS1NUQUNLX09GRlNFVA0KPiA+ICt2b2lk ICphbGxvY2Eoc2l6ZV90IHNpemUpOw0KPiA+ICsjZW5kaWYNCj4gPiArDQo+ID4gIF9fdmlzaWJs ZSB2b2lkIGRvX3N5c2NhbGxfNjQodW5zaWduZWQgbG9uZyBuciwgc3RydWN0IHB0X3JlZ3MgKnJl Z3MpDQo+ID4gIHsNCj4gPiAgICAgICAgIHN0cnVjdCB0aHJlYWRfaW5mbyAqdGk7DQo+ID4NCj4g PiArI2lmZGVmIENPTkZJR19SQU5ET01JWkVfS1NUQUNLX09GRlNFVA0KPiA+ICsgICAgICAgc2l6 ZV90IG9mZnNldCA9ICgoc2l6ZV90KXByYW5kb21fdTMyKCkpICUgMjU2Ow0KPiA+ICsgICAgICAg Y2hhciAqcHRyID0gYWxsb2NhKG9mZnNldCk7DQo+ID4gKw0KPiA+ICsgICAgICAgYXNtIHZvbGF0 aWxlKCIiOiI9bSIoKnB0cikpOw0KPiA+ICsjZW5kaWYNCj4gPiArDQo+ID4gICAgICAgICBlbnRl cl9mcm9tX3VzZXJfbW9kZSgpOw0KPiA+ICAgICAgICAgbG9jYWxfaXJxX2VuYWJsZSgpOw0KPiA+ ICAgICAgICAgdGkgPSBjdXJyZW50X3RocmVhZF9pbmZvKCk7DQo+IA0KPiBXZWxsIHRoaXMgaXMg ZGVsaWdodGZ1bGx5IHNob3J0ISANCg0KWWVzIDopIExvb2tzIGxpa2Ugd2hlbiB5b3UgYXJlIGFs bG93ZWQgdG8gdXNlIGZvcmJpZGRlbiBBUElzLCBsaWZlIG1pZ2h0IGJlIA0Kc3VkZGVubHkgbXVj aCBlYXNpZXIgOikgDQoNClRoZSBhbGxvY2EoKSBkZWZpbml0aW9uIGNvdWxkIGV2ZW4gYmUNCj4g bW92ZWQgdXAgYWZ0ZXIgdGhlICNpbmNsdWRlIG9mIHJhbmRvbS5oLCBqdXN0IHRvIHJlZHVjZSB0 aGUgbnVtYmVyIG9mDQo+ICNpZmRlZiBsaW5lcywgdG9vLg0KDQpTdXJlLCBjYW4gZG8gdGhpcy4g DQoNCiBJIHBhdGNoZWQgZ2V0cGlkKCkgdG8gcmVwb3J0IHN0YWNrIGxvY2F0aW9ucyBmb3IgYQ0K PiBnaXZlbiBwaWQsIGp1c3QgdG8gZ2V0IGEgc2Vuc2Ugb2YgdGhlIGVudHJvcHkuIE9uIDEwLDAw MCBnZXRwaWQoKQ0KPiBjYWxscyBJIHNlZSBjb3VudHMgbGlrZToNCj4gDQo+ICAgICAyMjkgIGZm ZmZhNTgyNDA2OTdkYmMNCj4gICAgIDI5NCAgZmZmZmE1ODI0MDY5N2RjNA0KPiAgICAgMzE1ICBm ZmZmYTU4MjQwNjk3ZGNjDQo+ICAgICAyOTggIGZmZmZhNTgyNDA2OTdkZDQNCj4gICAgIDMzNSAg ZmZmZmE1ODI0MDY5N2RkYw0KPiAgICAgMzExICBmZmZmYTU4MjQwNjk3ZGU0DQo+ICAgICAyOTUg IGZmZmZhNTgyNDA2OTdkZWMNCj4gICAgIDMwMyAgZmZmZmE1ODI0MDY5N2RmNA0KPiAgICAgMzM0 ICBmZmZmYTU4MjQwNjk3ZGZjDQo+ICAgICAzMzEgIGZmZmZhNTgyNDA2OTdlMDQNCj4gICAgIDMy MSAgZmZmZmE1ODI0MDY5N2UwYw0KPiAgICAgMjk4ICBmZmZmYTU4MjQwNjk3ZTE0DQo+ICAgICAy OTAgIGZmZmZhNTgyNDA2OTdlMWMNCj4gICAgIDMwNiAgZmZmZmE1ODI0MDY5N2UyNA0KPiAgICAg MzA4ICBmZmZmYTU4MjQwNjk3ZTJjDQo+ICAgICAzMjUgIGZmZmZhNTgyNDA2OTdlMzQNCj4gICAg IDMwMSAgZmZmZmE1ODI0MDY5N2UzYw0KPiAgICAgMzM2ICBmZmZmYTU4MjQwNjk3ZTQ0DQo+ICAg ICAzMjggIGZmZmZhNTgyNDA2OTdlNGMNCj4gICAgIDMyNiAgZmZmZmE1ODI0MDY5N2U1NA0KPiAg ICAgMzE0ICBmZmZmYTU4MjQwNjk3ZTVjDQo+ICAgICAzMDUgIGZmZmZhNTgyNDA2OTdlNjQNCj4g ICAgIDMxNSAgZmZmZmE1ODI0MDY5N2U2Yw0KPiAgICAgMzI1ICBmZmZmYTU4MjQwNjk3ZTc0DQo+ ICAgICAyODcgIGZmZmZhNTgyNDA2OTdlN2MNCj4gICAgIDMxOSAgZmZmZmE1ODI0MDY5N2U4NA0K PiAgICAgMzA5ICBmZmZmYTU4MjQwNjk3ZThjDQo+ICAgICAzMjkgIGZmZmZhNTgyNDA2OTdlOTQN Cj4gICAgIDMxMSAgZmZmZmE1ODI0MDY5N2U5Yw0KPiAgICAgMzA2ICBmZmZmYTU4MjQwNjk3ZWE0 DQo+ICAgICAzMTMgIGZmZmZhNTgyNDA2OTdlYWMNCj4gICAgIDI4OSAgZmZmZmE1ODI0MDY5N2Vi NA0KPiAgICAgIDk0ICBmZmZmYTU4MjQwNjk3ZWJjDQo+IA0KPiBTbyBpdCBsb29rcyBtb3JlIGxp a2UgNSBiaXRzIG9mIGVudHJvcHkgaW4gcHJhY3RpY2UgKGhlcmUgYXJlIDMzDQo+IHVuaXF1ZSBz dGFjayBsb2NhdGlvbnMpLCBidXQgdGhhdCBzdGlsbCBsb29rcyBnb29kIHRvIG1lLg0KDQpXaGF0 IEkgc3RpbGwgZG9uJ3QgZnVsbHkgdW5kZXJzdGFuZCBoZXJlIChkdWUgdG8gbXkgbGl0dGxlIGtu b3dsZWRnZSBvZg0KY29tcGlsZXJzKSBhbmQgYWZyYWlkIG9mIGlzIHRoYXQgdGhlIGFzbSBjb2Rl IHRoYXQgYWxsb2NhIGdlbmVyYXRlcyAoc2VlIG15IHZlcnNpb24pDQogYW5kIHRoZSBhbGlnbm1l bnQgbWlnaHQgZGlmZmVyIG9uIHRoZSBkaWZmZXJlbnQgdGFyZ2V0cywgZXRjLiANCklmIHlvdSB0 cmllZCBpdCBvbiB5b3VycywgY2FuIHlvdSBzZW5kIG1lIHRoZSBhc20gY29kZSB0aGF0IGl0IHBy b2R1Y2VkIGZvciB5b3U/DQpJcyBpdCBkaWZmZXJlbnQgZnJvbSBtaW5lPyANCg0KPiANCj4gQ2Fu IHlvdSBzZW5kIHRoZSBuZXh0IHZlcnNpb24gd2l0aCBhIENDIHRvIGxrbWwgdG9vPw0KDQpJIHdh cyB0aGlua2luZyBvbiBub3Qgc3BhbW1pbmcgbGttbCBiZWZvcmUgd2UgZ2V0IHNvbWUgYWdyZWVt ZW50IGhlcmUsIGJ1dA0KSSBjYW4gZG8gaXQgaWYgcGVvcGxlIGJlbGlldmUgdGhpcyBpcyB0aGUg cmlnaHQgd2F5LiANCg0KR2V0dGluZyBBbmR5J3MgZmVlZGJhY2sgb24gdGhpcyB2ZXJzaW9uIGZp cnN0IHdvdWxkIGJlIGdyZWF0ISANCg0KQmVzdCBSZWdhcmRzLA0KRWxlbmEuDQo=