diff options
author | Kees Cook <keescook@chromium.org> | 2017-04-05 22:43:33 -0700 |
---|---|---|
committer | Kees Cook <keescook@chromium.org> | 2017-06-30 12:00:52 -0700 |
commit | 29e48ce87f1eaaa4b1fe3d9af90c586ac2d1fb74 (patch) | |
tree | a71a2069bd8aeda44adf67b34c7ed1fa336f83fb /security/keys | |
parent | 3859a271a003aba01e45b85c9d8b355eb7bf25f9 (diff) |
task_struct: Allow randomized layout
This marks most of the layout of task_struct as randomizable, but leaves
thread_info and scheduler state untouched at the start, and thread_struct
untouched at the end.
Other parts of the kernel use unnamed structures, but the 0-day builder
using gcc-4.4 blows up on static initializers. Officially, it's documented
as only working on gcc 4.6 and later, which further confuses me:
https://gcc.gnu.org/wiki/C11Status
The structure layout randomization already requires gcc 4.7, but instead
of depending on the plugin being enabled, just check the gcc versions
for wider build testing. At Linus's suggestion, the marking is hidden
in a macro to reduce how ugly it looks. Additionally, indenting is left
unchanged since it would make things harder to read.
Randomization of task_struct is modified from Brad Spengler/PaX Team's
code in the last public patch of grsecurity/PaX based on my understanding
of the code. Changes or omissions from the original code are mine and
don't reflect the original grsecurity/PaX code.
Cc: Linus Torvalds <torvalds@linux-foundation.org>
Signed-off-by: Kees Cook <keescook@chromium.org>
Diffstat (limited to 'security/keys')
0 files changed, 0 insertions, 0 deletions