--- a/include/linux/personality.h Fri Jun 26 19:59:33 2009 +0200 +++ a/include/linux/personality.h Fri Jun 26 20:00:40 2009 +0200 @@ -40,7 +40,7 @@ enum { * Security-relevant compatibility flags that must be * cleared upon setuid or setgid exec: */ -#define PER_CLEAR_ON_SETID (READ_IMPLIES_EXEC|ADDR_NO_RANDOMIZE) +#define PER_CLEAR_ON_SETID (READ_IMPLIES_EXEC|ADDR_NO_RANDOMIZE|ADDR_COMPAT_LAYOUT|MMAP_PAGE_ZERO) /*