From: "H. Peter Anvin" <hpa@zytor.com>
To: John Stultz <john.stultz@linaro.org>
Cc: Cyrill Gorcunov <gorcunov@openvz.org>,
Andy Lutomirski <luto@amacapital.net>,
aarcange@redhat.com, ak@linux.intel.com,
Pavel Emelyanov <xemul@parallels.com>,
Stefani Seibold <stefani@seibold.net>,
x86@kernel.org, linux-kernel@vger.kernel.org, criu@openvz.org,
mingo@redhat.com, tglx@linutronix.de
Subject: Re: [CRIU] [PATCH] Add VDSO time function support for x86 32-bit kernel
Date: Fri, 14 Dec 2012 15:55:04 -0800 [thread overview]
Message-ID: <50CBBC58.4080307@zytor.com> (raw)
In-Reply-To: <50CBBACA.2070108@linaro.org>
On 12/14/2012 03:48 PM, John Stultz wrote:
> On 12/14/2012 02:48 PM, H. Peter Anvin wrote:
>> On 12/14/2012 02:43 PM, Cyrill Gorcunov wrote:
>>> On Fri, Dec 14, 2012 at 02:27:08PM -0800, H. Peter Anvin wrote:
>>>
>>>
>>> This won't help in case of scenario you've been pointing in
>>> previous email (where c/r happens in a middle of vdso),
>>> would it? Because we still need somehow to be sure we're not
>>> checkpointing in a middle of signal handler which will return
>>> to some vdso place.
>> It is okay if and only if those vdso places never change... which I
>> think is doable if they only contain trival system call wrappers, i.e.
>> something like:
>>
>> movl $__SYS_gettimeofday, %eax
>> syscall
>> ret
>
> Though doesn't this make it easier for exploits (somewhat undoing ASLR)?
> I know Andi always wanted to avoid having syscall instructions at a
> fixed location for the old vsyscall code (though I know we had it
> none-the-less for awhile). But maybe I'm confusing issues here?
>
They aren't in fixed addresses across processes... the vdso location can
still be randomized. It just has to be the same across the
checkpoint/restart operation, just like all the other instructions.
-hpa
next prev parent reply other threads:[~2012-12-14 23:55 UTC|newest]
Thread overview: 41+ messages / expand[flat|nested] mbox.gz Atom feed top
2012-12-12 20:19 [PATCH] Add VDSO time function support for x86 32-bit kernel stefani
2012-12-12 23:34 ` H. Peter Anvin
2012-12-13 5:53 ` Stefani Seibold
2012-12-13 6:10 ` H. Peter Anvin
2012-12-13 6:14 ` H. Peter Anvin
2012-12-13 6:17 ` Stefani Seibold
2012-12-13 6:47 ` H. Peter Anvin
2012-12-13 7:17 ` Stefani Seibold
2012-12-13 19:32 ` Andy Lutomirski
2012-12-14 0:09 ` H. Peter Anvin
2012-12-14 0:20 ` Andy Lutomirski
2012-12-14 0:36 ` H. Peter Anvin
2012-12-14 1:32 ` H. Peter Anvin
2012-12-14 1:42 ` Andy Lutomirski
2012-12-14 1:49 ` H. Peter Anvin
2012-12-14 2:11 ` Andy Lutomirski
2012-12-14 2:18 ` H. Peter Anvin
2012-12-14 2:20 ` Andy Lutomirski
2012-12-14 8:34 ` [CRIU] " Pavel Emelyanov
2012-12-14 18:35 ` H. Peter Anvin
2012-12-14 18:44 ` Andy Lutomirski
2012-12-14 18:47 ` H. Peter Anvin
2012-12-14 20:12 ` Cyrill Gorcunov
2012-12-14 21:08 ` H. Peter Anvin
2012-12-14 21:20 ` Cyrill Gorcunov
2012-12-14 21:21 ` H. Peter Anvin
2012-12-14 21:27 ` Andy Lutomirski
2012-12-14 22:00 ` H. Peter Anvin
2012-12-14 22:25 ` Cyrill Gorcunov
2012-12-14 22:27 ` H. Peter Anvin
2012-12-14 22:43 ` Cyrill Gorcunov
2012-12-14 22:48 ` H. Peter Anvin
2012-12-14 23:48 ` John Stultz
2012-12-14 23:55 ` H. Peter Anvin [this message]
2012-12-17 9:05 ` Pavel Emelyanov
[not found] ` <fb2e871b-3e2a-4e96-9eb9-cb2dd4f66eaa@email.android! .com>
2012-12-17 15:21 ` H. Peter Anvin
2012-12-17 18:56 ` Pavel Emelyanov
2012-12-17 18:57 ` H. Peter Anvin
2012-12-14 22:46 ` H. Peter Anvin
2012-12-14 23:09 ` Stefani Seibold
2012-12-14 23:29 ` H. Peter Anvin
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=50CBBC58.4080307@zytor.com \
--to=hpa@zytor.com \
--cc=aarcange@redhat.com \
--cc=ak@linux.intel.com \
--cc=criu@openvz.org \
--cc=gorcunov@openvz.org \
--cc=john.stultz@linaro.org \
--cc=linux-kernel@vger.kernel.org \
--cc=luto@amacapital.net \
--cc=mingo@redhat.com \
--cc=stefani@seibold.net \
--cc=tglx@linutronix.de \
--cc=x86@kernel.org \
--cc=xemul@parallels.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).