|
|
|
|
|
by dloss
450 days ago
|
|
For example: No buffer overflows, null pointer exceptions, use-after-free, etc. On ARM and RISCV64 not even the C compiler has to be trusted, because functional correctness has been proven for the binary. And there are more proofs besides functional correctness.
https://docs.sel4.systems/projects/sel4/frequently-asked-que... |
|