Return-Path: Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1752576AbdHAVEr (ORCPT ); Tue, 1 Aug 2017 17:04:47 -0400 Received: from mail-io0-f175.google.com ([209.85.223.175]:34128 "EHLO mail-io0-f175.google.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1752004AbdHAVEo (ORCPT ); Tue, 1 Aug 2017 17:04:44 -0400 MIME-Version: 1.0 In-Reply-To: References: <1501545093-56634-1-git-send-email-keescook@chromium.org> From: Kees Cook Date: Tue, 1 Aug 2017 14:04:42 -0700 X-Google-Sender-Auth: ejDH0SXauA5xqOYX1YKJk5N3hq4 Message-ID: Subject: Re: [PATCH v4 00/15] exec: Use sane stack rlimit under secureexec To: Linus Torvalds Cc: James Morris , Andrew Morton , David Howells , "Eric W. Biederman" , John Johansen , "Serge E. Hallyn" , Paul Moore , Stephen Smalley , Casey Schaufler , Tetsuo Handa , James Morris , Andy Lutomirski , "linux-fsdevel@vger.kernel.org" , linux-security-module , LKML Content-Type: text/plain; charset="UTF-8" Sender: linux-kernel-owner@vger.kernel.org List-ID: X-Mailing-List: linux-kernel@vger.kernel.org Content-Length: 660 Lines: 20 On Tue, Aug 1, 2017 at 1:19 PM, Linus Torvalds wrote: > On Tue, Aug 1, 2017 at 8:04 AM, Kees Cook wrote: >> >> Do you want me to carry this for -next and send it as a distinct pull >> request for v4.14? > > Yes, I think that would be preferred. I consider this a "execve()" > cleanup/change with implications for the security models rather than > the other way around, so I'd rather keep it separate, and you already > have a few other git trees so I think it makes sense to just treat it > as another of your git pulls next merge window. Okay, sounds good. Thanks! -Kees -- Kees Cook Pixel Security