From owner-freebsd-security@freebsd.org Wed Mar 15 20:21:36 2017 Return-Path: Delivered-To: freebsd-security@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 8F62BD0EA17 for ; Wed, 15 Mar 2017 20:21:36 +0000 (UTC) (envelope-from mailing-machine@vniz.net) Received: from mail-lf0-f67.google.com (mail-lf0-f67.google.com [209.85.215.67]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 1B9C819E5 for ; Wed, 15 Mar 2017 20:21:35 +0000 (UTC) (envelope-from mailing-machine@vniz.net) Received: by mail-lf0-f67.google.com with SMTP id r36so1985956lfi.0 for ; Wed, 15 Mar 2017 13:21:35 -0700 (PDT) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:subject:to:references:from:message-id:date :user-agent:mime-version:in-reply-to; bh=VJIy1Qdz1Pt2nG6MUjLkVrPRFkcy2yK47lBs53Vadtg=; b=nVvHUGfACr1dVQsdDQdG6nW8tHSc4jrJrZhtxyImK7iGEV3j2qqqsro9IpynOsu1Kx AN7TnEtWKszuTE18BEwoxyYrauyrQapbvfrgr0GWwk6afCkh/GTt1xUqqx7jKoZnVVTQ oybcaDVv+cn2faJsf7f/efG+gvzewuBT8nwyTsgyvSrZghByJtATsiVW2oXRFquP8Rzp PicP9OsVlW5+mASaxBrPdPt9fjAjyGLa1EEbbVJhOzEJuOY2q5ZJ8YfGeqGAUte3GY9z nWBdvY/f9MG2eVSk9PMEDyDXy+VpSnQfqU5V4w8YeWthIMT5IWe+b5l0YpeAvO4RLni7 Trqg== X-Gm-Message-State: AFeK/H2xtY6xaUKe6i6h0UcQghqBHkUlPSeQzyFqXi/INKnjZ9m7dJBUvoqVmlL+QxD3OQ== X-Received: by 10.25.35.9 with SMTP id j9mr1551385lfj.62.1489608817817; Wed, 15 Mar 2017 13:13:37 -0700 (PDT) Received: from [192.168.1.2] ([89.169.173.68]) by smtp.gmail.com with ESMTPSA id l78sm498085lfl.59.2017.03.15.13.13.35 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Wed, 15 Mar 2017 13:13:37 -0700 (PDT) Subject: Re: arc4random weakness To: Steven Chamberlain , freebsd-security@freebsd.org, freebsd-hackers@freebsd.org References: <20170313220639.GB65190@pyro.eu.org> <20170315130615.GC25448@pyro.eu.org> From: Andrey Chernov Message-ID: <5160183b-9778-59aa-6cf9-118014a588eb@freebsd.org> Date: Wed, 15 Mar 2017 23:13:26 +0300 User-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; rv:45.0) Gecko/20100101 Thunderbird/45.8.0 MIME-Version: 1.0 In-Reply-To: <20170315130615.GC25448@pyro.eu.org> Content-Type: multipart/signed; micalg=pgp-sha256; protocol="application/pgp-signature"; boundary="IW8vRQi5Oug3kvNAmDSvknaK7slsa26E3" X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.23 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 15 Mar 2017 20:21:36 -0000 This is an OpenPGP/MIME signed message (RFC 4880 and 3156) --IW8vRQi5Oug3kvNAmDSvknaK7slsa26E3 Content-Type: multipart/mixed; boundary="vgsQt28TqTXLWtKeuESqb2p3dEqopMkgU"; protected-headers="v1" From: Andrey Chernov To: Steven Chamberlain , freebsd-security@freebsd.org, freebsd-hackers@freebsd.org Message-ID: <5160183b-9778-59aa-6cf9-118014a588eb@freebsd.org> Subject: Re: arc4random weakness References: <20170313220639.GB65190@pyro.eu.org> <20170315130615.GC25448@pyro.eu.org> In-Reply-To: <20170315130615.GC25448@pyro.eu.org> --vgsQt28TqTXLWtKeuESqb2p3dEqopMkgU Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: quoted-printable On 15.03.2017 16:06, Steven Chamberlain wrote: > Also it is great to see INHERIT_ZERO was added to mmap(2)! It is not so great. For a program which forks very often zeroing even one page will be slowdown. It will be better and faster to implement it as fork syscall wrapper setting single variable, as it already done for threaded lib. --vgsQt28TqTXLWtKeuESqb2p3dEqopMkgU-- --IW8vRQi5Oug3kvNAmDSvknaK7slsa26E3 Content-Type: application/pgp-signature; name="signature.asc" Content-Description: OpenPGP digital signature Content-Disposition: attachment; filename="signature.asc" -----BEGIN PGP SIGNATURE----- iQEcBAEBCAAGBQJYyaBpAAoJEKUckv0MjfbK4MMH/j2D3lV/qC4y/7Z/zHkVCOkY t9MQLZ/9sMuWYzKyKAiIsv6FqdEHnWyYxA52aoCh9DptMMaOb+tzd6I0OnNY5FOY bxU+E6olYhaDu4Hj3+uxLvvOMYF0fim+LWJboqE18/zyG4/GbVOuTU3E2v7sTPZZ o6IrEKL/yqkuOkGznh662T6OiVDzS3SHjL7ewtgfNLhLhh8yA7zRQ0scQD7TjMEe tzt059vvL6rDxcvQsMWPgUjMUzfPqsElsbjUQkXVo+wQCi7ozS6jgOTkdXaZZ59+ 8+bJPKOj8WTL096A2HsnKggSYUSTlI6sfqvo2jhwt54KTBUMBgHupjj685txbEs= =MjFb -----END PGP SIGNATURE----- --IW8vRQi5Oug3kvNAmDSvknaK7slsa26E3--