Le jeu. 26 sept. 2019 à 10:54, Maxime Villard <m...@m00nbsd.net> a écrit : > I recently made a big set of changes to fix many bugs and vulnerabilities in > compat_linux and compat_linux32, the majority of which have a security impact > bigger than the Intel CPU bugs we hear about so much. These compat layers are > enabled by default, so everybody is affected. > ... > Therefore, I am making today the same proposal as Taylor in 2017, because the > problem is still there exactly as-is and we just hit it again; the solution > however is more straightforward.
Yes please, it's the right thing to do. Just please still keep also the option to compile it into the kernel. I also now have no objection to moving all the arch-specific bits under sys/compat/ as you&Taylor suggested in the old thread. Jaromir