Conversation

Here, I am just trying to summarize the differences (compare to Scudo), please correct me, if I misunderstood: 1. Scudo can't reliably detect invalid free. 2. It lacks fine grained randomization. Is there any differences if we try to compare all 3 above mentioned allocators?🤔
3
1
There's a substantial difference between detecting something reliably with a deterministic mitigation, or a weak probabilistic one that an attacker can bypass via information leaks or brute force. It's an important distinction. Detection of those things needs to be qualified.
1
2