#HardenedBSD joins #sydbox in enforcing PIE binaries by adding a sysctl tunable to control PIE execution! Here is to more #security, more #freedom, more #freesoftware and more fruitful #colloboration! See https://git.hardenedbsd.org/hardenedbsd/HardenedBSD/-/commit/93af663dd50fda676e4028c01122035541209db8 and https://man.exherbolinux.org/syd.7.html#Enforcing_Position-Independent_Executables_(PIE) #exherbo #bsd #linux
HBSD: Add sysctl tunable to control ELF PIE execution (93af663d) · Commits · HardenedBSD / HardenedBSD · GitLab
Introduce a new hardening.elf_pie_only sysctl node that controls whether non-PIE ELF applications can be executed. This sysctl node is handled per-jail. When hardening.elf_pie_only is set to 1, only ELF applications...







