On Mon, 2022-09-05 at 22:44 +0200, Felix Potthast wrote: > i just stumbled upon the fact that debian doesn't yet make use of the > Intel CET security feature, while many other distributions > (Ubuntu, Fedora, Suse, Arch Linux) do.
Allegedly Intel CET provides weak protection, although perhaps it improved since the 2016 analysis by grsecurity folks: https://grsecurity.net/effectiveness_of_intel_cet_against_code_reuse_attacks -- bye, pabs https://wiki.debian.org/PaulWise
signature.asc
Description: This is a digitally signed message part