[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [PATCH 2/2] Changelog: Add __ro_after_init and CET



Hi Andrew,

On 09/03/2022 12:39, Andrew Cooper wrote:
Signed-off-by: Andrew Cooper <andrew.cooper3@xxxxxxxxxx>
---
CC: Jan Beulich <JBeulich@xxxxxxxx>
CC: Roger Pau Monné <roger.pau@xxxxxxxxxx>
CC: Wei Liu <wl@xxxxxxx>
---
  CHANGELOG.md | 6 ++++++
  1 file changed, 6 insertions(+)

diff --git a/CHANGELOG.md b/CHANGELOG.md
index 83d85fad5bbc..577517383ec9 100644
--- a/CHANGELOG.md
+++ b/CHANGELOG.md
@@ -6,6 +6,12 @@ The format is based on [Keep a 
Changelog](https://keepachangelog.com/en/1.0.0/)
## [unstable UNRELEASED](https://xenbits.xen.org/gitweb/?p=xen.git;a=shortlog;h=staging) - TBD +### Added
+ - __ro_after_init support on x86, for marking data as immutable after boot.

This is also supported by Arm (see commit ace403022358 "xen/arm: Support properly __ro_after_init on Arm").

Cheers,

+ - Support for Xen using x86 Control Flow Enforcement technology for its own
+   protection.  Both Shadow Stacks (ROP protection) and Indirect Branch
+   Tracking (COP/JOP protection).
+
  ### Removed / support downgraded
   - dropped support for the (x86-only) "vesa-mtrr" and "vesa-remap" command 
line options

--
Julien Grall



 


Rackspace

Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.