Non-executable mappings now in NetBSD too

Pedro F. Giffuni giffunip at yahoo.com
Sun Aug 31 12:50:03 PDT 2003


 --- Peter Jeremy <PeterJeremy at optushome.com.au> wrote: 
...
> 
> Based on some recent BUGTRAQ postings, OpenBSD has a trick to support
> full protection on the i386.  The text segment and executable part of
> shared libraries are placed at low virtual addresses and CS is
> restricted to only cover the low address space.  I don't know whether
> it's worthwhile to implement something along these lines in FreeBSD.
> 

I think we'll have to do it sooner or later simply because they do it ;). The
issue is, of course, Linux emulation and backward compatibility. 

I think we could do the same but ignore the CS restriction if the user is
trusted and running inside a jail.

cheers,

    Pedro.

________________________________________________________________________
Want to chat instantly with your online friends?  Get the FREE Yahoo!
Messenger http://uk.messenger.yahoo.com/


More information about the freebsd-hackers mailing list