What security issue?
Posted Dec 11, 2008 14:49 UTC (Thu) by
anton (guest, #25547)
In reply to:
What security issue? by NCunningham
Parent article:
KSM runs into patent trouble
I think a more reliable leak is to then write in the page, and see if
the write takes a long time (due to copy-on-write). There were other
potential information leaks discussed, but IMO they were all pretty
far-fetched and can be defended against (e.g., don't make it
predictable when pages will be merged; on the application side, when
inputting passwords, initialize the buffer with random data).
(
Log in to post comments)