MacMusic  |  PcMusic  |  440 Software  |  440 Forums  |  440TV  |  Zicos
attacks
Recherche

[$] Defending against page-cache attacks

jeudi 17 janvier 2019, 18:04 , par LWN.net
The kernel's page cache works to improve performance by minimizing disk I/O
and increasing the sharing of physical memory. But, like other
performance-enhancing techniques that involve resources shared across
security boundaries, the page cache can be abused as a way to extract
information that should be kept secret. A recent paper [PDF] by Daniel Gruss
and colleagues showed how the page cache can be targeted for a number of
different attacks, leading to an abrupt change in how the
mincore() system call works at the end
of the 5.0 merge window. But subsequent discussion has made it clear
that mincore() is just the tip of the iceberg; it is unclear what
will really need to be done to protect a system against page-cache attacks
or what the performance cost might be.
https://lwn.net/Articles/776801/rss
News copyright owned by their original publishers | Copyright © 2004 - 2024 Zicos / 440Network
Date Actuelle
ven. 22 nov. - 08:08 CET