Gentoo Archives: gentoo-hardened

From: Alex Xu <alex_y_xu@×××××.ca>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] Problem with (?) hardened-sources-3.15.x on kvm-vm
Date: Thu, 28 Aug 2014 23:13:09
Message-Id: 53FFB77F.4060604@yahoo.ca
In Reply to: Re: [gentoo-hardened] Problem with (?) hardened-sources-3.15.x on kvm-vm by Sven Vermeulen
1 On 28/08/14 05:02 PM, Sven Vermeulen wrote:
2 > On Wed, Aug 27, 2014 at 05:34:20PM +0100, André Aparício wrote:
3 >> I encountered the same problem with qemu/kvm but can't even login, I
4 >> get random segfaults and even failed malloc assertions
5 >> in /sbin/init, /sbin/rc or /bin/login (never past this).
6 >>
7 >> But it works fine with CONFIG_PAX_MEMORY_UDEREF disabled.
8 >
9 > I am not able to reproduce this :-(
10 >
11 > Host and guest are both on 3.15.5-hardened-r2 and both have UDEREF enabled.
12 >
13 > I tried emerging boost on the guest as recommended in another post but this
14 > didn't fail.
15 >
16 > Wkr,
17 > Sven Vermeulen
18 >
19
20 My VM has 12 CPUs but I use MAKEOPTS=-j3. Maybe this affects
21 reproducibility.
22
23 My host is of unknown kernel, but I'm pretty sure it's not Gentoo, let
24 alone Hardened.
25
26 Also, I am using <cpu mode="host-passthrough"/> in libvirt (equivalent
27 to -cpu host in qemu opts), so PAX detects PCID and enables strong
28 UDEREF. I will try with pax_weakuderef as soon as I get a chance to
29 reboot the VM.

Attachments

File name MIME type
signature.asc application/pgp-signature

Replies

Subject Author
Re: [gentoo-hardened] Problem with (?) hardened-sources-3.15.x on kvm-vm "Marcin Mirosław" <marcin@×××××.pl>