0004-TIPS-2020-hxp-kernel-rop : bypass-KPTI-with-signal_handler
在bypass-KPTI-with-trampoline中,在启用KPTI的环境中,使用仅绕过smep的exp,会提示段错误/$./04_exploit_bypass_smep[+]successfullyopened/dev/hackme[*]tryingtoleakupto320bytesmemory[+]foundstackcanary:0x7ae17b2ee0e55b00@index16[