if I read between the lines of this @grsecurity post… PaX doesn’t have userland stack proving and thus isn’t immune, despite claim @ start?
3
Replying to @comex @grsecurity
what probing do you mean? the kernel doesn't do anything like that, it enforces a heap-stack gap instead (in PaX since 2010AD).

Jun 21, 2017 · 11:01 AM UTC

1
Replying to @paxteam @grsecurity
how large a gap?
1
it's in the advisory, did you read it? ;)
1