Navigation
Recherche
|
[$] A hole in FineIBT protection
jeudi 27 février 2025, 16:44 , par LWN.net
Intel's indirect
branch tracking (IBT) is a hardware-implemented control-flow-integrity mechanism that makes it harder for an attacker to gain control of the system by way of a corrupted indirect branch. FineIBT is a software extension to IBT that is meant to improve its protection. Recently, though, Jennifer Miller reported a novel way to bypass FineIBT by taking advantage of how the kernel's system-call entry point is constructed. In response, Peter Zijlstra is working on some FineIBT enhancements to close that hole and make IBT more secure in general.
https://lwn.net/Articles/1011680/
Voir aussi |
56 sources (32 en français)
Date Actuelle
lun. 3 mars - 21:42 CET
|