> > b) Same scenario as above, but word-substitute apache->kernel and
> >    mod_trojan->device driver.  If the linux kernel ran in 'space 2',
> >    but device drivers ran in 'space 3', then nasties can't hurt
> >    the kernel, while still enjoying read-write access to the
> >    bus and other hardware that a legit device driver needs access
> >    to.

And we reinvent the Multics ring structure one more time....

dockmaster.af.mil, wherefore art thou?

-- db

Reply via email to