#3001 Change: LIBFFI_34_static_trampolines
Closed: Accepted 4 months ago by churchyard. Opened 5 months ago by amoloney.

Libffi is currently configured to use dynamic trampolines, which require some source of memory which is both writable and executable. This is an obvious security issue, and selinux and system defaults have made it more and more difficult to safely provide this memory to libffi clients. With this change, libffi will be configured to use static trampolines, which do not require such memory, and will not pose those security and administrative risks.

The goal is desirable. Based on the fedora-devel discussion, there might be issues in some packages, though, afaiu, known problems have been resolved. I think we should try this, and as usual, keep an eye out for issues.


AGREED (+3, 0, -0) after a week

5 months ago

4 months ago

