Skip to content

Seal the usertrap table against application modification. - #15172

Open
copybara-service[bot] wants to merge 1 commit into
masterfrom
test/cl991323287
Open

copybara-service[bot] wants to merge 1 commit into
masterfrom
test/cl991323287

Conversation

@copybara-service

Copy link
Copy Markdown

Seal the usertrap table against application modification.

Patched application code jumps into the usertrap table, but the
application could still munmap(), mprotect(), mremap(), or
madvise(MADV_DONTNEED/MADV_DONTFORK) it. This allowed for application threads
to fault in the middle of the trampoline code, causing corrupted state.

Note this does NOT implement mseal. Sealing is a sentry-only privilege and is
reserved for sealing sentry-managed areas within userspace.

@copybara-service copybara-service Bot added the exported Issue was exported automatically label Oct 1, 2026
@copybara-service
copybara-service Bot force-pushed the test/cl991323287 branch 2 times, most recently from 732d5b7 to a52cd93 Compare October 1, 2026 23:21
Patched application code jumps into the usertrap table, but the
application could still munmap(), mprotect(), mremap(), or
madvise(MADV_DONTNEED/MADV_DONTFORK) it. This allowed for application threads
to fault in the middle of the trampoline code, causing corrupted state.

Note this does NOT implement mseal. Sealing is a sentry-only privilege and is
reserved for sealing sentry-managed areas within userspace.

PiperOrigin-RevId: 991323287
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

exported Issue was exported automatically

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant