From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: (qmail 27854 invoked by alias); 18 Feb 2018 20:07:38 -0000 Mailing-List: contact cygwin-help@cygwin.com; run by ezmlm Precedence: bulk List-Id: List-Subscribe: List-Archive: List-Post: List-Help: , Sender: cygwin-owner@cygwin.com Mail-Followup-To: cygwin@cygwin.com Received: (qmail 27834 invoked by uid 89); 18 Feb 2018 20:07:37 -0000 Authentication-Results: sourceware.org; auth=none X-Virus-Found: No X-Spam-SWARE-Status: No, score=-1.9 required=5.0 tests=AWL,BAYES_00,SPF_PASS autolearn=ham version=3.3.2 spammy=hostile, W10, w10, UD:p_disable_mandatory_aslr.sh X-HELO: vsmx009.vodafonemail.xion.oxcs.net Received: from vsmx009.vodafonemail.xion.oxcs.net (HELO vsmx009.vodafonemail.xion.oxcs.net) (153.92.174.87) by sourceware.org (qpsmtpd/0.93/v0.84-503-g423c35a) with ESMTP; Sun, 18 Feb 2018 20:07:35 +0000 Received: from vsmx001.vodafonemail.xion.oxcs.net (unknown [192.168.75.191]) by mta-5-out.mta.xion.oxcs.net (Postfix) with ESMTP id 08EC2C03E6 for ; Sun, 18 Feb 2018 20:07:33 +0000 (UTC) Received: from Gertrud (unknown [91.47.56.211]) by mta-5-out.mta.xion.oxcs.net (Postfix) with ESMTPA id D63A330065B for ; Sun, 18 Feb 2018 20:07:30 +0000 (UTC) From: Achim Gratz To: cygwin@cygwin.com Subject: Re: W10 Mandatory ASLR default References: <8297ddf5-5d06-c2b1-526b-16ca311749aa@ferzkopp.net> <20180212164945.GA2361@jbsupah> <890bb1f3-65b3-b9d8-fdaa-bb148cce4163@towo.net> <327030c8-7dfa-8e57-eb70-45e890f8aac2@SystematicSw.ab.ca> Date: Sun, 18 Feb 2018 20:07:00 -0000 In-Reply-To: <327030c8-7dfa-8e57-eb70-45e890f8aac2@SystematicSw.ab.ca> (Brian Inglis's message of "Thu, 15 Feb 2018 23:41:41 -0700") Message-ID: <87bmgmf4e5.fsf@Rainer.invalid> User-Agent: Gnus/5.13 (Gnus v5.13) Emacs/25.3 (gnu/linux) MIME-Version: 1.0 Content-Type: text/plain X-VADE-STATUS: LEGIT X-SW-Source: 2018-02/txt/msg00197.txt.bz2 Brian Inglis writes: > Could setup be updated to reset Mandatory ASLR if the reg keys exist, or an > /etc/postinstall/[0z]p_disable_mandatory_aslr.sh script do a check and reset? Both methods would likely be considered hostile by those who are most likely set these keys and in fact I'd expect them to be re-set by group policy even if they were changeable in any corporate environment. Note that forcing mandatory ASLR on non-ASLR-aware executables is not the default on Windows 10, although beta-testers might have got pushed such a setting, based on what was reported here and elsewhere. Anyone who sets this option on his own box without understanding what it really does gets to keep the broken pieces. Regards, Achim. -- +<[Q+ Matrix-12 WAVE#46+305 Neuron microQkb Andromeda XTk Blofeld]>+ SD adaptation for Waldorf rackAttack V1.04R1: http://Synth.Stromeko.net/Downloads.html#WaldorfSDada -- Problem reports: http://cygwin.com/problems.html FAQ: http://cygwin.com/faq/ Documentation: http://cygwin.com/docs.html Unsubscribe info: http://cygwin.com/ml/#unsubscribe-simple