On Wed, Apr 25, 2018 at 09:43:18PM +0100, Alexander Nasonov wrote: > > Thinking a bit more about this, I don't think my patch will prevent > data leakage from the kernel because /dev/mem and /dev/kmem are > readable at all securelevels. It can only prevent leakage in some
If that is true it's a serious regression. Are you talking about the pathological case where "options INSECURE" is set? Thor
