ASLR and PIE wider adoption.

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]



With more and more distros and even android employing gccs -fpie for
building packages, should Arch consider enabling it.

For my users it would mean less programs being killed by the
grsecurity kernel due to text relocation attempts. No complaints yet as
I have a sandboxed flash browser but eventually there may be one about
x264/mp4.

For everyone else it would mean a more secure system due to better use
of ASLR.

Are complications like static binaries an issue arch simply hasn't the
time to deal with (does gcc work around them automatically now?) and do
users care more about adding upto a few seconds to the start up time of
some programs on x86 over security?


[Index of Archives]     [Linux Wireless]     [Linux Kernel]     [ATH6KL]     [Linux Bluetooth]     [Linux Netdev]     [Kernel Newbies]     [Share Photos]     [IDE]     [Security]     [Git]     [Netfilter]     [Bugtraq]     [Yosemite News]     [MIPS Linux]     [ARM Linux]     [Linux Security]     [Linux RAID]     [Linux ATA RAID]     [Samba]     [Device Mapper]
  Powered by Linux