Don't expose kernel memory addresses through /proc etc.
From kptr_restrict: This toggle indicates whether restrictions are placed on exposing kernel addresses via /proc and other interfaces. [...] When kptr_restrict is set to (2), kernel pointers printed using %pK will be replaced with 0's regardless of privileges. Not exposing the kernel memory addresses like that makes sense now that we do not ship the kernel .map files any more. Reds: #10951
