Get the latest tech news

Memory Sealing "mseal" System Call Merged For Linux 6.10


Merged this Friday evening into the Linux 6.10 kernel is the new mseal() system call for memory sealing.

Try it today to view our site ad-free, multi-page articles on a single page, and more while the proceeds allow us to write more Linux hardware reviews. For example, such an attacker primitive can break control-flow integrity guarantees since read-only memory that is supposed to be trusted can become writable or .text pages can get remapped. The mseal system call is designed to be used by the likes of the GNU C Library "glibc" while loading ELF executables to seal non-writable memory segments or by the Google Chrome web browser and other browsers for protecting security sensitive data structures.

Get the Android app

Or read this on Phoronix

Read more on:

Photo of Linux

Linux

Photo of memory sealing

memory sealing

Photo of system call

system call

Related news:

News photo

Btrfs Sends In Fixes For Linux 6.10 & Restores "norecovery" Mount Option

News photo

DM-Crypt "High Priority" In Linux 6.10 Makes For Better Throughput & Latency

News photo

Linux 6.10 Hardware Monitoring Includes New Lenovo ThinkStation Driver