delorie.com/archives/browse.cgi   search  
Mail Archives: cygwin/2018/02/18/15:07:48

X-Recipient: archive-cygwin AT delorie DOT com
DomainKey-Signature: a=rsa-sha1; c=nofws; d=sourceware.org; h=list-id
:list-unsubscribe:list-subscribe:list-archive:list-post
:list-help:sender:from:to:subject:references:date:in-reply-to
:message-id:mime-version:content-type; q=dns; s=default; b=QaZpe
2w9nUjeExkvynnjf1UmSHBWW5NtbD9q4HrY01UmwKPU6d8AqV+4aWlz68/YLCQOp
stMMemZi1cuLK1zw44r42TRbIZD2fcsKrCW6HFzzhYzT4WY50xwdCRAy7r5KIm2c
tUGIlNEBxCoxEOeNh/F93U0B63+eO9LklDy0HA=
DKIM-Signature: v=1; a=rsa-sha1; c=relaxed; d=sourceware.org; h=list-id
:list-unsubscribe:list-subscribe:list-archive:list-post
:list-help:sender:from:to:subject:references:date:in-reply-to
:message-id:mime-version:content-type; s=default; bh=FJGuGCl3l1F
2QhAoZkrecXAxq3I=; b=Ut+LpSr5aupB3y2LTnGvllqNUwXnWQvCYor0qdMUquT
td9wVXAtFiohceoE3XfOj9AI5cKVloh6RsEbmaMX9481oq4yh3bjfiK2HnBc74+d
A3LwLmcOqnPp32FpYUax0pWk1AAszkJLVeKw3TSGQ+bZJ7JK5qwTm4FSNvK5ZnW4
=
Mailing-List: contact cygwin-help AT cygwin DOT com; run by ezmlm
List-Id: <cygwin.cygwin.com>
List-Subscribe: <mailto:cygwin-subscribe AT cygwin DOT com>
List-Archive: <http://sourceware.org/ml/cygwin/>
List-Post: <mailto:cygwin AT cygwin DOT com>
List-Help: <mailto:cygwin-help AT cygwin DOT com>, <http://sourceware.org/ml/#faqs>
Sender: cygwin-owner AT cygwin DOT com
Mail-Followup-To: cygwin AT cygwin DOT com
Delivered-To: mailing list cygwin AT cygwin DOT com
Authentication-Results: sourceware.org; auth=none
X-Virus-Found: No
X-Spam-SWARE-Status: No, score=-1.9 required=5.0 tests=AWL,BAYES_00,SPF_PASS autolearn=ham version=3.3.2 spammy=hostile, W10, w10, UD:p_disable_mandatory_aslr.sh
X-HELO: vsmx009.vodafonemail.xion.oxcs.net
From: Achim Gratz <Stromeko AT nexgo DOT de>
To: cygwin AT cygwin DOT com
Subject: Re: W10 Mandatory ASLR default
References: <8297ddf5-5d06-c2b1-526b-16ca311749aa AT ferzkopp DOT net> <CAJ1FpuMivfg+RKg3kDf8rt6n-Ky0Ami_5_HpGjbAMGpHgM57Tg AT mail DOT gmail DOT com> <e4b6f4cd-1fb2-5d4c-1f94-f8ca73bbfa1f AT ferzkopp DOT net> <20180212164945 DOT GA2361 AT jbsupah> <ec5eb9a0-b33e-5bc8-090d-db0c571d5846 AT ferzkopp DOT net> <dd3a6a82-19bb-eb84-51df-5d1cde39315f AT SystematicSw DOT ab DOT ca> <890bb1f3-65b3-b9d8-fdaa-bb148cce4163 AT towo DOT net> <aff8daa3-a958-acd2-66ca-579751981c9a AT ferzkopp DOT net> <327030c8-7dfa-8e57-eb70-45e890f8aac2 AT SystematicSw DOT ab DOT ca>
Date: Sun, 18 Feb 2018 21:07:30 +0100
In-Reply-To: <327030c8-7dfa-8e57-eb70-45e890f8aac2@SystematicSw.ab.ca> (Brian Inglis's message of "Thu, 15 Feb 2018 23:41:41 -0700")
Message-ID: <87bmgmf4e5.fsf@Rainer.invalid>
User-Agent: Gnus/5.13 (Gnus v5.13) Emacs/25.3 (gnu/linux)
MIME-Version: 1.0
X-VADE-STATUS: LEGIT

Brian Inglis writes:
> Could setup be updated to reset Mandatory ASLR if the reg keys exist, or an
> /etc/postinstall/[0z]p_disable_mandatory_aslr.sh script do a check and reset?

Both methods would likely be considered hostile by those who are most
likely set these keys and in fact I'd expect them to be re-set by group
policy even if they were changeable in any corporate environment.  Note
that forcing mandatory ASLR on non-ASLR-aware executables is not the
default on Windows 10, although beta-testers might have got pushed such
a setting, based on what was reported here and elsewhere.  Anyone who
sets this option on his own box without understanding what it really
does gets to keep the broken pieces.


Regards,
Achim.
-- 
+<[Q+ Matrix-12 WAVE#46+305 Neuron microQkb Andromeda XTk Blofeld]>+

SD adaptation for Waldorf rackAttack V1.04R1:
http://Synth.Stromeko.net/Downloads.html#WaldorfSDada

--
Problem reports:       http://cygwin.com/problems.html
FAQ:                   http://cygwin.com/faq/
Documentation:         http://cygwin.com/docs.html
Unsubscribe info:      http://cygwin.com/ml/#unsubscribe-simple

- Raw text -


  webmaster     delorie software   privacy  
  Copyright © 2019   by DJ Delorie     Updated Jul 2019