Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Hard disagree. Correctness means conformance with the spec. The spec says, for example, you get a page fault if you access privileged memory. That’s what Intel does. The spec doesn’t make any guarantees beyond that.

The software stack is at fault for building their security model on assumptions about what the hardware did that aren’t guaranteed in the spec. The software assumes the existence of this magical isolation that the CPU never promised to provide.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: