-
公开(公告)号:US20140365742A1
公开(公告)日:2014-12-11
申请号:US13910333
申请日:2013-06-05
申请人: BAIJU V. PATEL , XIAONING LI , H P. ANVIN , ASIT K. MALLICK , GILBERT NEIGER , JAMES B. CROSSLAND , TOBY OPFERMAN , ATUL A. KHARE , JASON W. BRANDT , JAMES S. COKE , BRIAN L. VAJDA
发明人: BAIJU V. PATEL , XIAONING LI , H P. ANVIN , ASIT K. MALLICK , GILBERT NEIGER , JAMES B. CROSSLAND , TOBY OPFERMAN , ATUL A. KHARE , JASON W. BRANDT , JAMES S. COKE , BRIAN L. VAJDA
IPC分类号: G06F12/14
CPC分类号: G06F12/145 , G06F8/434 , G06F9/30105 , G06F9/30134 , G06F21/52
摘要: An example processing system may comprise: a lower stack bound register configured to store a first memory address, the first memory address identifying a lower bound of a memory addressable via a stack segment; an upper stack bound register configured to store a second memory address, the second memory address identifying an upper bound of the memory addressable via the stack segment; and a stack bounds checking logic configured to detect unauthorized stack pivoting, by comparing a memory address being accessed via the stack segment with at least one of the first memory address and the second memory address.
摘要翻译: 示例处理系统可以包括:下堆叠绑定寄存器,被配置为存储第一存储器地址,第一存储器地址识别经由堆栈段可寻址的存储器的下限; 上堆叠绑定寄存器,其被配置为存储第二存储器地址,所述第二存储器地址通过所述堆栈段识别所述存储器可寻址的上限; 并且通过将经由所述堆栈段访问的存储器地址与所述第一存储器地址和所述第二存储器地址中的至少一个进行比较来配置用于检测未授权堆栈枢转的堆栈边界检查逻辑。
-
公开(公告)号:US20140189194A1
公开(公告)日:2014-07-03
申请号:US13730920
申请日:2012-12-29
IPC分类号: G06F12/10
CPC分类号: G06F12/109 , G06F9/45533 , G06F9/45558 , G06F12/0292 , G06F12/1009 , G06F12/145 , G06F2009/45583 , G06F2212/151 , G06F2212/657
摘要: Methods and apparatus relating to low overhead paged memory runtime protection are described. In an embodiment, permission information for guest physical mapping are received prior to utilization of paged memory by an Operating System (OS) based on the guest physical mapping. The permission information is provided through an Extended Page Table (EPT). Other embodiments are also described.
摘要翻译: 描述了与低开销分页存储器运行时保护有关的方法和装置。 在一个实施例中,客户物理映射的许可信息在基于客户物理映射的操作系统(OS)利用分页存储器之前被接收。 许可信息通过扩展页表(EPT)提供。 还描述了其它实施例。
-