clang way to patch for Spectre?

Gordon Tetlow gordon at tetlows.org
Thu Jan 4 18:18:12 UTC 2018


On Thu, Jan 4, 2018 at 10:49 AM, Julian Elischer <julian at freebsd.org> wrote:
> On 5/1/18 12:02 am, Lev Serebryakov wrote:
>>
>> Hello Freebsd-security,
>>
>> https://reviews.llvm.org/D41723
>>
>>
> not really..
>
> What's to stop an unprivileged used bringing his own compiler? or a
> precompiled binary?

If I'm reading this right (and there is a good chance I'm not), since
unprivileged users don't bring the kernel or system libraries to the
system, the mitigations would still work.

Gordon


More information about the freebsd-security mailing list