[PATCH 01/12] Security: Add CAP_COMPROMISE_KERNEL

Matthew Garrett matthew.garrett at nebula.com
Tue Mar 19 21:28:06 EDT 2013


Mm. The question is whether we can reliably determine the ranges a device should be able to access without having to trust userspace (and, ideally, without having to worry about whether iommu vendors have done their job). It's pretty important for PCI passthrough, so we do need to care. 
-- 
Matthew Garrett | matthew.garrett at nebula.com


More information about the kexec mailing list