Today
Re-check with p_candebug() that credentials of the target are still fine.
Block execve() around the check and fget_remote() call with execve_block(), which prevents suid exec under us.
Same bug assuming the number of queues from iflib will be a power of two, was the only other network driver I found with the same bug
How's this relate to D57240 ?
Not saying that I'll take them but where did you get the two Realtek driver files from?
The ones I am aware off are different, that's why I am asking.
This looks promising! Here's my plan on how to exploit this:
respond to olce@'s comments
Add p_comm
P.S. Oleksandr, if you got review from any other domain expert than Warner, consider this approved by mentor (me).
Not a domain expert, so leaving this 100% to Warner. Code & style wise everything LGTM.
This update takes care of PERSONALITY_PATH in addition to PKG_DEFAULT_PATH.
Thanks! Applied the feedback now.
Is it reasonable to commit this (with the understanding that there will still be issues post-resume)?
Shall we update the kill test in tests/sys/capsicum/capmode.cc to verify sigqueue too?
The default pattern is to repeat the queues across the RX queues so if there are 4 RSS queues but 8 RX queues you end up with 1 2 3 4 1 2 3 4 but this is actually configurable at runtime for traffic steering and whatnot
Panel Used By
| Dashboard | Restricted Dashboard |