Re: [PATCH net] netns: provide pure entropy for net_hash_mix()

2019-03-28 Thread David Miller
From: Eric Dumazet Date: Wed, 27 Mar 2019 08:21:30 -0700 > net_hash_mix() currently uses kernel address of a struct net, > and is used in many places that could be used to reveal this > address to a patient attacker, thus defeating KASLR, for > the typical case (initial net namespace, &init_net i

[PATCH net] netns: provide pure entropy for net_hash_mix()

2019-03-27 Thread Eric Dumazet
net_hash_mix() currently uses kernel address of a struct net, and is used in many places that could be used to reveal this address to a patient attacker, thus defeating KASLR, for the typical case (initial net namespace, &init_net is not dynamically allocated) I believe the original implementation