Navigation
Recherche
|
[$] Enhancing FineIBT
vendredi 10 octobre 2025, 16:32 , par LWN.net
At the Linux
Security Summit Europe (LSS EU), Scott Constable and Sebastian Österlund gave a talk on an enhancement to a control-flow integrity (CFI) protection that was added to the kernel several years ago. The 'FineIBT: Fine-grain Control-flow Enforcement with Indirect Branch Tracking' mechanism was merged for Linux 6.2 in early 2023 to harden the kernel against CFI attacks of various sorts, but needed some fixes and enhancements more recently. The talk looked at the CFI vulnerability problem, FineIBT, and an enhanced version that is hoped to be able to unify all of the disparate hardware and software mitigations to address both regular and speculative CFI vulnerabilities.
https://lwn.net/Articles/1039633/
|
56 sources (32 en français)
Date Actuelle
ven. 10 oct. - 22:55 CEST
|