| ▲ | afdbcreid 3 hours ago | ||||||||||||||||
Both only attach provenance to allocations. The common example is:
Where a buffer overflow can still overwrite `is_admin`.Both also require recompilation of everything, which might be possible for CHERI but not for Fil-C - which is why, for example, there cannot be Fil-C support for Windows or macOS. | |||||||||||||||||
| ▲ | cperciva 2 hours ago | parent | next [-] | ||||||||||||||||
No, CHERI supports sub-object capabilities. | |||||||||||||||||
| |||||||||||||||||
| ▲ | aw1621107 an hour ago | parent | prev [-] | ||||||||||||||||
IIRC Filip said that Fil-C can be modified fairly easily to catch those overflows, but that breaks a fair bit of C code. | |||||||||||||||||