From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1752718AbbJFOtn (ORCPT ); Tue, 6 Oct 2015 10:49:43 -0400 Received: from mail-wi0-f182.google.com ([209.85.212.182]:35259 "EHLO mail-wi0-f182.google.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1752577AbbJFOtm (ORCPT ); Tue, 6 Oct 2015 10:49:42 -0400 Date: Tue, 6 Oct 2015 16:49:37 +0200 From: Ingo Molnar To: Arjan van de Ven Cc: bp@alien8.de, luto@amacapital.net, peterz@infradead.org, sds@tycho.nsa.gov, keescook@chromium.org, torvalds@linux-foundation.org, efault@gmx.de, linux-kernel@vger.kernel.org, hpa@zytor.com, tglx@linutronix.de, brgerst@gmail.com, dvlasenk@redhat.com, linux-tip-commits@vger.kernel.org Subject: Re: [tip:x86/mm] x86/mm: Warn on W^X mappings Message-ID: <20151006144937.GA15284@gmail.com> References: <1444064120-11450-1-git-send-email-sds@tycho.nsa.gov> <5613D96C.8080407@linux.intel.com> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <5613D96C.8080407@linux.intel.com> User-Agent: Mutt/1.5.23 (2014-03-12) Sender: linux-kernel-owner@vger.kernel.org List-ID: X-Mailing-List: linux-kernel@vger.kernel.org * Arjan van de Ven wrote: > On 10/6/2015 2:54 AM, tip-bot for Stephen Smalley wrote: > >Commit-ID: e1a58320a38dfa72be48a0f1a3a92273663ba6db > >Gitweb: http://git.kernel.org/tip/e1a58320a38dfa72be48a0f1a3a92273663ba6db > >Author: Stephen Smalley > >AuthorDate: Mon, 5 Oct 2015 12:55:20 -0400 > >Committer: Ingo Molnar > >CommitDate: Tue, 6 Oct 2015 11:11:48 +0200 > > > >x86/mm: Warn on W^X mappings > > > >Warn on any residual W+X mappings after setting NX > >if DEBUG_WX is enabled. Introduce a separate > >X86_PTDUMP_CORE config that enables the code for > >dumping the page tables without enabling the debugfs > >interface, so that DEBUG_WX can be enabled without > >exposing the debugfs interface. Switch EFI_PGT_DUMP > >to using X86_PTDUMP_CORE so that it also does not require > >enabling the debugfs interface. > > I like it, so Acked-by: Arjan van de Ven > > I also have/had an old userland script to do similar checks but using the > debugfs interface... ... would that be useful to have somewhere more central? > > http://git.fenrus.org/tmp/i386-check-pagetables.pl Sure, I think it could be put into tools/testing/selftests/x86/. Thanks, Ingo