Print this page
7029 want per-process exploit mitigation features (secflags)
7030 want basic address space layout randomization (aslr)
7031 noexec_user_stack should be a secflag
7032 want a means to forbid mappings around NULL.

Split Close
Expand all
Collapse all
          --- old/usr/src/lib/libc/port/mapfile-vers
          +++ new/usr/src/lib/libc/port/mapfile-vers
↓ open down ↓ 3040 lines elided ↑ open up ↑
3041 3041          nss_setent;
3042 3042          _nss_XbyY_fgets;
3043 3043          __nsw_extended_action_v1;
3044 3044          __nsw_freeconfig_v1;
3045 3045          __nsw_getconfig_v1;
3046 3046          __nthreads;
3047 3047          __openattrdirat;
3048 3048          option_to_attr;
3049 3049          __priv_bracket;
3050 3050          __priv_relinquish;
     3051 +        psecflags;
3051 3052          pset_assign_forced;
3052 3053          pset_bind_lwp;
3053 3054          _psignal;
3054 3055          pthread_attr_getdaemonstate_np;
3055 3056          pthread_attr_setdaemonstate_np;
3056 3057          _pthread_setcleanupinit;
3057 3058          __putwchar_xpg5;
3058 3059          __putwc_xpg5;
3059 3060          rctlctl;
3060 3061          rctllist;
3061 3062          _realbufend;
3062 3063          _resume;
3063 3064          _resume_ret;
3064 3065          _rpcsys;
3065 3066          _sbrk_grow_aligned;
3066 3067          scrwidth;
     3068 +        secflag_by_name;
     3069 +        secflag_clear;
     3070 +        secflags_copy;
     3071 +        secflags_difference;
     3072 +        secflags_fullset;
     3073 +        secflags_intersection;
     3074 +        secflags_isempty;
     3075 +        secflag_isset;
     3076 +        secflags_issubset;
     3077 +        secflags_issuperset;
     3078 +        secflag_set;
     3079 +        secflag_to_bit;
     3080 +        secflag_to_str;
     3081 +        secflags_union;
     3082 +        psecflags_validate_delta;
     3083 +        secflags_zero;
     3084 +        psecflags_default;
     3085 +        secflags_parse;
     3086 +        secflags_to_str;
     3087 +        psecflags_validate;
3067 3088          semctl64;
3068 3089          _semctl64;
3069 3090          set_setcontext_enforcement;
3070 3091          _setbufend;
3071 3092          __set_errno;
3072 3093          setprojrctl;
3073 3094          _setregid;
3074 3095          _setreuid;
3075 3096          setsigacthandler;
3076 3097          shmctl64;
↓ open down ↓ 308 lines elided ↑ open up ↑
XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX