Repository navigation
Enable CFG in node.exe #42100
Copy link
Copy link
Closed
Labels
buildIssues and PRs related to Node.js builds or CI infrastructure.Issues and PRs related to Node.js builds or CI infrastructure.windowsIssues and PRs related to the Windows platform.Issues and PRs related to the Windows platform.
Description
Activity
- addedbuildIssues and PRs related to Node.js builds or CI infrastructure.Issues and PRs related to Node.js builds or CI infrastructure.windowsIssues and PRs related to the Windows platform.Issues and PRs related to the Windows platform.
on Feb 23, 2022 cc @nodejs/platform-windows
Please check for Linux and MacOS binaries also.
Please check for Linux and MacOS binaries also.
Control flow guard isn't a thing that exists on those platforms.
I meant to say, run the Mac and Linux binaries against BinSkim to generate their reports.
- added 2 commits that reference this issue
on Apr 2, 2025 - added 2 commits that reference this issue
on Apr 16, 2025 - added 2 commits that reference this issue
on May 1, 2025
Metadata
Metadata
Assignees
Labels
buildIssues and PRs related to Node.js builds or CI infrastructure.Issues and PRs related to Node.js builds or CI infrastructure.windowsIssues and PRs related to the Windows platform.Issues and PRs related to the Windows platform.
BinSkim is a binary static analysis tool that provides security and correctness results for Windows Portable Executable and *nix ELF binary formats.
error BA2008: 'node.exe' does not enable the control flow guard (CFG) mitigation. To resolve this issue, pass /guard:cf on both the compiler and linker command lines. Binaries also require the /DYNAMICBASE linker option in order to enable CFG.
Package used : https://github.com/microsoft/binskim
Command used :
.\BinSkim.exe analyze < path to executable >