SIGN IN SIGN UP

[3.14] gh-128605: Add branch protections for x86_64 in asm_trampoline.S (#128606) (#135345)

Apply Intel Control-flow Technology for x86-64 on asm_trampoline.S.

Required for mitigation against return-oriented programming (ROP)
and Call or Jump Oriented Programming (COP/JOP) attacks.

Manual application is required for the assembly files.

See also: https://sourceware.org/annobin/annobin.html/Test-cf-protection.html
S
stratakis committed
4b96a34978caed24b74051c3f5ea929ec843ad25
Parent: 081421a
Committed by GitHub <noreply@github.com> on 6/10/2025, 3:41:39 PM