[$] Read-only dynamic data

Post Syndicated from corbet original https://lwn.net/Articles/750215/rss

Kernel developers go to some lengths to mark read-only data so that it can
be protected by the system’s memory-management unit.
Memory that cannot be changed cannot be altered by an attacker to corrupt the
system. But the kernel’s mechanisms for managing read-only memory do not
work for memory that must be initialized after the initial system bootstrap
has completed. A patch set from Igor Stoppa
seeks to change that situation by creating a new API just for
late-initialized read-only data.