Skip to content

Conversation

@topimiettinen
Copy link
Owner

Signed-off-by: Topi Miettinen [email protected]

Signed-off-by: Topi Miettinen <[email protected]>
@topimiettinen topimiettinen marked this pull request as draft October 11, 2021 19:16
@topimiettinen
Copy link
Owner Author

Once this works, similar approach can be taken with mremap(): in case MREMAP_MAYMOVE is specified, force move and randomize the address.

I've proposed the same for the kernel (1/2, 2/2).

@topimiettinen
Copy link
Owner Author

Maybe SECCOMP_RET_USER_NOTIF could be used to force the change even if other libraries don't cooperate. It's not perfect since it requires NoNewPrivileges, so it can't be used when setuid programs should work. But it would make sense as an optional feature.

@sonarqubecloud
Copy link

SonarCloud Quality Gate failed.    Quality Gate failed

Bug C 1 Bug
Vulnerability A 0 Vulnerabilities
Security Hotspot A 0 Security Hotspots
Code Smell A 6 Code Smells

No Coverage information No Coverage information
0.0% 0.0% Duplication

idea Catch issues before they fail your Quality Gate with our IDE extension sonarlint SonarLint

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants