Commit d63dcc2c authored by Electron752's avatar Electron752 Committed by popcornmix
Browse files

ARM64: Enable Kernel Address Space Randomization (#1792)



Randomization allows the mapping between virtual addresses and physical
address to be different on each boot.  This makes it more difficult
to exploit security vulnerabilities that require knowledge of fixed
hardware addresses.

The firmware generates a 8 byte random number during bootup and stores
it in the device tree under chosen/kaslr-seed. This number is used
to randomize the address mapping.

This change enables this feature in the build configuration for ARM64.

Signed-off-by: default avatarMichael Zoran <mzoran@crowfest.net>
parent cbff0ca1
Loading
Loading
Loading
Loading
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please to comment