Return-Path: Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1423442Ab2KNVJO (ORCPT ); Wed, 14 Nov 2012 16:09:14 -0500 Received: from mail.linuxfoundation.org ([140.211.169.12]:37956 "EHLO mail.linuxfoundation.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1422629Ab2KNVJK (ORCPT ); Wed, 14 Nov 2012 16:09:10 -0500 Date: Wed, 14 Nov 2012 13:09:09 -0800 From: Andrew Morton To: Kees Cook Cc: Jeff Liu , LKML , Andreas Dilger , John Sobecki , "viro@zeniv.linux.org.uk" , Alan Cox , "arnd@arndb.de" , James Morris , "Ted Ts'o" , "gregkh@linuxfoundation.org" , jakub@redhat.com, drepper@redhat.com, "linux-fsdevel@vger.kernel.org" Subject: Re: [RESEND PATCH V3] binfmt_elf.c: use get_random_int() to fix entropy depleting Message-Id: <20121114130909.2dcc5b75.akpm@linux-foundation.org> In-Reply-To: References: <5099F133.5030305@oracle.com> <5099FBAA.6000200@oracle.com> <509A078D.8060705@oracle.com> X-Mailer: Sylpheed 3.0.2 (GTK+ 2.20.1; x86_64-pc-linux-gnu) Mime-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit Sender: linux-kernel-owner@vger.kernel.org List-ID: X-Mailing-List: linux-kernel@vger.kernel.org Content-Length: 1225 Lines: 27 On Tue, 6 Nov 2012 23:13:54 -0800 Kees Cook wrote: > On Tue, Nov 6, 2012 at 11:02 PM, Jeff Liu wrote: > > On 11/07/2012 02:21 PM, Kees Cook wrote: > >> I still want to hear at least from Ted about this changes -- we would > >> be potentially increasing the predictability of these bytes... > > > > We would not increasing that if this routine would be used for AT_RANDOM > > only(and if the array keeping aligned to 4 bytes). > > Otherwise, it would be, so let's waiting for further feedbacks. > > get_random_int() comes from a different pool than get_random_bytes(), > IIUC. I'd like to hear some convincing reasoning as to why this change > doesn't compromise predictability. :) But the original "ELF: implement AT_RANDOM for glibc PRNG seeding" compromised predictability. That's the whole point of this patch. What was so important about that patch that justified gobbling down so much of the system's entropy accumulation? -- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/