linux_*_hardened: don't set VMAP_STACK

This has been on by default upstream for as long as it's been an option.
This commit is contained in:
Emily 2020-04-05 05:28:38 +01:00
parent 7d5352df31
commit 3d4c8ae901

View file

@ -22,7 +22,6 @@ optionalAttrs (stdenv.hostPlatform.platform.kernelArch == "x86_64") {
# Note: this config depends on EXPERT y and so will not take effect, hence
# it is left "optional" for now.
MODIFY_LDT_SYSCALL = option no;
VMAP_STACK = yes; # Catch kernel stack overflows
# Randomize position of kernel and memory.
RANDOMIZE_BASE = yes;