Gentoo Archives: gentoo-hardened

From: Ned Ludd <solar@g.o>
To: gentoo-hardened@l.g.o
Cc: Gentoo Recruiters <recruiters@g.o>, kerframil@×××××.com
Subject: Re: [gentoo-hardened] latest kernel exploit patch for vmsplice coming?
Date: Mon, 11 Feb 2008 20:38:15
Message-Id: 1202762291.14499.26.camel@hangover
In Reply to: Re: [gentoo-hardened] latest kernel exploit patch for vmsplice coming? by "Petteri Räty"
1 On Mon, 2008-02-11 at 21:45 +0200, Petteri Räty wrote:
2 > Ned Ludd kirjoitti:
3 > > On Sun, 2008-02-10 at 23:41 +0200, pageexec@××××××××.hu wrote:
4 > >
5 > > More FYI..
6 > > Hardened is nearly dead in respects to the
7 > > hardened-profile/hardened-toolchain/hardened-kernel.
8 > > It does not have to die but we are in a bit of a catch-22.
9 > > I'm the last dev really watching over those things. Everybody else has
10 > > retired and moved on in life. I'm starting to do the same. Weekend and
11 > > evening hobbies of other interest are starting to take priority. So the
12 > > catch-22 is that hardened needs more devs+proxies and or to be
13 > > re-evaluated.. The kicker is that I don't really have the spare time to
14 > > mentor new people. So... Any of you that want to help this project
15 > > continue. Please stop by #gentoo-hardened on freenode and offer whatever
16 > > help you can that fit within your skill traits (self motivated ppl++).
17 > >
18 > >
19 >
20 > Finding mentors should not hold up things. Please contact recruiters if
21 > you need someone to track down mentors for you.
22
23
24 Thanks very much for this key offering of help. Right now I've filed one
25 bug for Natanael Copa. 209669 (He's been very helpful over the years and
26 has recently expressed an interest in becoming a spam target.)
27
28 Next on my list would be try to talk Kerin.Miller going from staff to
29 dev status so he can help with the kernels w/o having to proxy via me.
30
31 Lots of people showed up today in #gentoo-hardened offering help. So
32 many in fact that it's hard to keep up and tell all the people where we
33 could use the help. But I'll say it again for those that failed to
34 read/understand what I said the first time. (self motivated++) that
35 means. If you can think of something that you think could use
36 improvements then don't wait around for me/others to say it's a good
37 idea. Just do it. And submit it..
38
39 ----
40 PS: For all of you that have been waiting for a fixed vmsplice kernel to
41 hit the tree. Well you are in luck. Kerin put his patchset together and
42 I just pushed it to the tree about 30mins ago. So for those of you that
43 want to help but don't know where to start. I'd say. Go test the
44 newest .23 kernel in the tree and report feedback to Kerin.
45
46 Changes: https://bugs.gentoo.org/207393
47
48 * Bump to genpatches-base-2.6.23-9
49 * Ported grsecurity-2.1.11-2.6.23.14-200801231800 to 2.6.23.15
50 * Disables COMPAT_VDSO in x86/defconfig
51 * Removes bogus symbols ACPI_SLEEP_PROC_(FS|SLEEP) from x86_64/defconfig
52
53 Thanks.. kerframil,PaX Team and all others.
54
55
56 --
57 Ned Ludd <solar@g.o>
58 Gentoo Linux
59
60 --
61 gentoo-hardened@l.g.o mailing list

Replies

Subject Author
Re: [gentoo-hardened] latest kernel exploit patch for vmsplice coming? Sune Kloppenborg Jeppesen <jaervosz@g.o>