Skip to content

Enable CET Compatibility for Release Builds - #692

Merged
planetchili merged 1 commit into
mainfrom
add-cet-compat
Oct 5, 2026
Merged

planetchili merged 1 commit into
mainfrom
add-cet-compat

Conversation

@markgalvan-intel

Copy link
Copy Markdown
Collaborator

Added /CETCOMPAT to Release builds to enable CET shadow stack compatibility and improve exploit protection for shipped binaries.

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot review overview

🟢 Approval recommended

The linker option is correctly scoped to Release builds and reaches all native executable and shared-library targets.

Review effort: Balanced
Findings: None

What changed in this PR

Enables CET shadow-stack compatibility for Release binaries through the shared linker policy.

Changes:

  • Adds /CETCOMPAT to Release linker options.
File Description
cmake/​PresentMonCompiler.cmake Enables CET compatibility for Release executable and DLL links.

💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.

@planetchili planetchili left a comment

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Smart addition, not problems here.

@planetchili
planetchili merged commit 35863c7 into main Oct 5, 2026
1 check passed
@planetchili
planetchili deleted the add-cet-compat branch October 5, 2026 14:24
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants