Comment by varispeed

9 hours ago

MTE support in itself says nothing as vendors usually obscure implementation details and also MTE is a perfect place to implant undocumented backdoors for security services to use.

Any evidence of those backsoors?

This reads like “your front door lock is the perfect place for security services to have a master key.” True, but not strong as an argument against having a lock.

  • >This reads like “your front door lock is the perfect place for security services to have a master key

    Even that analogy fails because MTE is in addition to existing countermeasures against memory corruption attacks. In the worst case, compromising MTE just means you don't have MTE, not that you get arbitrary code execution.