Fork us on GitHub Follow us on Facebook Follow us on Twitter

Opened 20 months ago

Last modified 20 months ago

#760 accepted defect

vreg's can be modified by an arbitrary thread running on another CPU

Reported by: Jakub Jermář Owned by: Jakub Jermář
Priority: major Milestone:
Component: helenos/kernel/amd64 Version: mainline
Keywords: Cc:
Blocker for: Depends on:
See also:


On amd64 and ia32, vreg_init() creates a user-writable page for each CPU with the intention to offer this page via the FS, resp. GS, register as an array of virtual registers that can be used by uspace to implement eg. TLS. Unfortunately, this page can be accessed and written to also from other CPUs without any limits.

Change History (2)

comment:1 Changed 20 months ago by Jakub Jermář

Owner: set to Jakub Jermář
Status: newaccepted

comment:2 Changed 20 months ago by Jakub Jermář

Milestone: 0.8.0
Note: See TracTickets for help on using tickets.