Compatibility Test Suite results for baseline Android Open Source Project 9.0.0 builds compared to builds with the new hardened malloc:
gist.github.com/thestinger/7f1 …
There are some more latent upstream memory corruption bugs that need to be fixed. Some of that is already done.
Conversation
Replying to
The first of the new round of bug fixes:
github.com/AndroidHardeni
This one has no practical consequences when using the standard malloc implementation. However, most of the bugs are use-after-free due to issues like improper reference counting and can have serious consequences.
2
