-
Notifications
You must be signed in to change notification settings - Fork 313
Harden program-cache permissions, binary-path resolution, and coredump helper lifetime #2399
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Merged
rparolin
merged 15 commits into
NVIDIA:main
from
rparolin:hardening/cache-perms-loader-coredump
Jul 23, 2026
Merged
Changes from all commits
Commits
Show all changes
15 commits
Select commit
Hold shift + click to select a range
749ff87
Harden program-cache perms, binary-path resolution, and coredump help…
rparolin a243030
Simplify code comments on the hardening fixes
rparolin c9e5d5d
Remove agent_authored markers from the new tests
rparolin 1c5eb3e
Remove weak coredump buffer-lifetime test
rparolin dc8bb9f
Silence bandit S103 on the intentionally world-writable test dir
rparolin c1d2cce
test: expect absolutized binary path on Windows
rparolin e911dd7
Raise on out-of-range c_int/c_byte kernel arguments instead of trunca…
rparolin 2f5be65
param_packer: use PyLong_AsInt for c_int range check on Python 3.13+
rparolin 8d6ee67
param_packer: unify c_int/c_byte range check via PyLong_AsLongAndOver…
rparolin 1d74206
Split kernel-arg overflow change (#363) into its own PR (#2402)
rparolin 6fd6b6c
Address review: scope cache perms to tmp, revert cybind docstring
rparolin aee8b16
Document accepted security trade-off for shared program caches
rparolin 644ae82
Simplify cache permission comment; drop internal tool name
rparolin 8623e74
Strip internal issue numbers from cache permission test docstring
rparolin f7b1684
pathfinder: use os.add_dll_directory() instead of raw kernel32 call
rparolin File filter
Filter by extension
Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
Some comments aren't visible on the classic Files Changed page.
There are no files selected for viewing
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Oops, something went wrong.
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
We really should migrate from
os.pathtopathlib.Path(which has far fewer foot-guns). #2410There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
@mdboom Can you create a ticket for that work? We can then prioritize it and remove it from the code base completely. Should we also include a pre-commmit check that prevents people from creating new code with
os.pathin it?