DescriptionEugene Teo (Security Response)
2009-07-20 05:58:19 UTC
+++ This bug was initially created as a clone of Bug #512638 +++
Description of problem:
This patch removes the dependency of mmap_min_addr on CONFIG_SECURITY. It also sets a default mmap_min_addr of 4096.
mmapping of addresses below 4096 will only be possible for processes with CAP_SYS_RAWIO.
Upstream commit:
http://git.kernel.org/linus/e0a94c2a63f2644826069044649669b5e7ca75d3
We don't have support for this at all, a proper backport of mmap_min_addr code can include this if it so chooses, but we don't really need a seperate BZ. We build with CONFIG_SECURITY, as long as the backport is done properly this patch will be meaningless to us.
Comment 2Vitaly Mayatskikh
2009-07-20 18:12:34 UTC
Eric, I want to use this bz to implement mmap_min_addr separately from bz508843.
An advisory has been issued which should help the problem
described in this bug report. This report is therefore being
closed with a resolution of ERRATA. For more information
on therefore solution and/or where to find the updated files,
please follow the link below. You may reopen this bug report
if the solution does not work for you.
http://rhn.redhat.com/errata/RHSA-2011-0263.html