What is striking about this implementation is that it does not involve CR0.WP. The implementation elegantly sidesteps this by exploiting the fact that it is under no obligation to access memory via the pointer it receives from userspace. Since the kernel is in complete control of virtual memory, it can simply remap the physical frame into its own virtual address space, with arbitrary permissions, and operate on it as it wishes.
Раскрыты подробности похищения ребенка в Смоленске09:27。新收录的资料对此有专业解读
Фонбет Чемпионат КХЛ。新收录的资料对此有专业解读
Aideen Malone & Roland Horvath, Into The Woods