v1 2026-09-07

BPF 按 mm_struct 读用户内存 · v1

新增两个可睡眠 BPF kfunc 通过 mm_struct 读取 exec 参数字符串,并将 linux_binprm->mm 标记为 trusted-or-null。

原始补丁链接