Article 2T04H New OpenBSD kernel security feature

New OpenBSD kernel security feature

by
donotreply@osnews.com (Thom Holwerda)
from OSnews on (#2T04H)
Theo de Raadt unveiled and described an interesting new kernel security feature: Kernel Address Randomized Link.Over the last three weeks I've been working on a new randomization feature which will protect the kernel.The situation today is that many people install a kernel binary from OpenBSD, and then run that same kernel binary for 6 months or more. We have substantial randomization for the memory allocations made by the kernel, and for userland also of course.However that kernel is always in the same physical memory, at the same virtual address space (we call it KVA).Improving this situation takes a few steps.
External Content
Source RSS or Atom Feed
Feed Location http://www.osnews.com/files/recent.xml
Feed Title OSnews
Feed Link https://www.osnews.com/
Reply 0 comments