[Secure-testing-team] Bug#728975: linux: [ARM] CONFIG_OABI_COMPAT harmful (slower, unsafe, breaks at least seccomp and audit)

Henrique de Moraes Holschuh hmh at debian.org
Thu Nov 7 12:46:37 UTC 2013


Package: linux
Severity: normal
Tags: security

Please refer to:
https://lkml.org/lkml/2013/11/5/448
https://lkml.org/lkml/2013/11/6/633

The issue is not yet closed in LKML, but basically OABI_COMPAT enabled seems
to be a danger: at least seccomp and audit should not be used with OABI, and
to top it off it is not "free" as far as performance goes, either: a fair
amount of added complexity, and an extra D-cache miss on every syscall.

-- System Information:
Debian Release: 7.2
  APT prefers proposed-updates
  APT policy: (990, 'proposed-updates'), (990, 'stable')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 3.4.68+ (SMP w/8 CPU cores)
Locale: LANG=pt_BR.UTF-8, LC_CTYPE=pt_BR.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash

-- 
  "One disk to rule them all, One disk to find them. One disk to bring
  them all and in the darkness grind them. In the Land of Redmond
  where the shadows lie." -- The Silicon Valley Tarot
  Henrique Holschuh



More information about the Secure-testing-team mailing list