oss-sec mailing list archives
Re: Re: Fwd: x86 ROP mitigation
From: Rich Felker <dalias () libc org>
Date: Tue, 17 Nov 2015 17:11:39 -0500
On Tue, Nov 17, 2015 at 01:52:07PM -0500, Daniel Micay wrote:
Is that really the right approach vs. preventing hijacking of flow control via return pointers and function pointers? It doesn't really seem like there's an end game in mind where it actually prevents ROP rather than just removing many useful gadgets. Making useful ROP gadgets harder to find doesn't mean much, since tools are used to find them and the tools can be improved if it becomes necessary. i.e. why not just go with something like PaX's RAP
My understanding is that it's not ABI-compatible with non-RAP code, so you'd essentially be going with a whole new ABI. If so, this is going to be completely impractical for most users. Am I mistaken? Rich
Current thread:
- x86 ROP mitigation Solar Designer (Nov 17)
- Message not available
- Re: Fwd: x86 ROP mitigation Bernd Schmidt (Nov 17)
- Re: Fwd: x86 ROP mitigation Jeff Law (Nov 17)
- Re: Re: Fwd: x86 ROP mitigation Daniel Micay (Nov 17)
- Re: Re: Fwd: x86 ROP mitigation Josh Bressers (Nov 17)
- Re: Re: Fwd: x86 ROP mitigation Daniel Micay (Nov 17)
- Re: Re: Fwd: x86 ROP mitigation Josh Bressers (Nov 17)
- Re: Re: Fwd: x86 ROP mitigation Daniel Micay (Nov 17)
- Re: Fwd: x86 ROP mitigation Bernd Schmidt (Nov 17)
- Message not available
- Re: Re: Fwd: x86 ROP mitigation Rich Felker (Nov 17)
- Re: Re: Fwd: x86 ROP mitigation Daniel Micay (Nov 17)
- Re: Fwd: x86 ROP mitigation Solar Designer (Nov 17)
- Re: Fwd: x86 ROP mitigation Florian Weimer (Nov 18)
- Data on Linux attacks (was Re: [oss-security] Re: Fwd: x86 ROP mitigation) Josh Bressers (Nov 18)
- Re: Data on Linux attacks (was Re: [oss-security] Re: Fwd: x86 ROP mitigation) Kurt Seifried (Nov 18)
- Re: Re: Fwd: x86 ROP mitigation Steve Grubb (Nov 18)
- Re: Re: Fwd: x86 ROP mitigation Fabio Pagani (Nov 18)
- Re: Fwd: x86 ROP mitigation Solar Designer (Nov 19)
- Re: Re: Fwd: x86 ROP mitigation Jonathan Salwan (Nov 19)
- Re: Fwd: x86 ROP mitigation Solar Designer (Nov 17)