Kev sim txhawb rau kev rov tsim kho Linux ntsiav hauv Clang nrog CFI kev tiv thaiv mechanism

Kees Cook, yav dhau los kernel.org CIO thiab tus thawj coj ntawm Ubuntu Security Team, tam sim no ua haujlwm rau Google kom ruaj ntseg Android thiab ChromeOS, npaj kev sim chaw cia khoom nrog thaj ua rau thaj uas tso cai tsim cov ntsiav rau x86_64 architecture siv Clang compiler thiab ua kom CFI (Control Flow Integrity) tiv thaiv mechanism. CFI muab rau kev tshawb pom ntawm qee hom kev coj cwj pwm uas tsis muaj peev xwm ua rau muaj kev ua txhaum ntawm kev tswj hwm ib txwm muaj (tswj ntws) raws li kev ua tiav ntawm kev siv dag zog.

Nco qab tias hauv LWM 9 Cov kev hloov pauv xav tau los tsim lub Linux ntsiav siv Clang rau x86_64 tau suav nrog. Android thiab ChromeOS tej yaam num twb ua ntawv thov Clang rau kernel tsev, thiab Google tab tom sim Clang ua lub platform tseem ceeb rau kev tsim cov kernels rau nws cov tshuab Linux ntau lawm. Kernel variants ua nrog Clang kuj tsim cov haujlwm linaro ΠΈ CROS.

Tau qhov twg los: opennet.ru

Ntxiv ib saib