LWN.net Logo

vmsplice(): the making of a local root exploit

vmsplice(): the making of a local root exploit

Posted Feb 12, 2008 0:46 UTC (Tue) by jd (guest, #26381)
Parent article: vmsplice(): the making of a local root exploit

It's also a good reason for checking ranges. Putting unsigned values into signed variables
could do all kinds of ugly things, as could the reverse, or any other unwise casting of types.
The fact that so few bugs of this kind have turned up over the entirety of the kernel lifespan
merits applause to the superb kernel coders out there, but as this illustrates, these sorts of
bugs happen even to the best.


(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds