Re: Introducing security hardening features for Lenny
Riku Voipio wrote:
>> In kernels that support text ASLR, programs compiled
>> for PIE will gain full position randomization.
>
> For which architectures is text ASLR available? does it require
> external kernel patches? PIE means considerable system overhead
> and fatter binaries, especially for systems without large
> caches.
I'm only aware of x86 and amd64. I don't think it's necessary on
other archs.
Did you followup with upstream on the SSP problems we've seen
on ARM?
Cheers,
        Moritz
Reply to: