http://bugs.winehq.org/show_bug.cgi?id=24370
Summary: kernel32: provide GetSystemDEPPolicy stub (Microsoft EMET v2) Product: Wine Version: 1.3.2 Platform: x86 OS/Version: Linux Status: NEW Severity: normal Priority: P2 Component: kernel32 AssignedTo: wine-bugs@winehq.org ReportedBy: focht@gmx.net
Hello,
"Enhanced Mitigation Experience Toolkit v2" from Microsoft requires this stub.
Although not really useful as of now (missing application security shims), it might be of benefit later.
--- snip --- fixme:advapi:ReportEventW (0xcafe4242,0x0001,0x0000,0x00001388,(nil),0x000b,0x000000f6,0x3009a1b4,0x5dc624): stub err:eventlog:ReportEventW L"clr20r3" err:eventlog:ReportEventW L"emet_conf.exe" err:eventlog:ReportEventW L"2.0.0.0" err:eventlog:ReportEventW L"4c6aef82" err:eventlog:ReportEventW L"mitigationinterface" err:eventlog:ReportEventW L"2.0.0.1" err:eventlog:ReportEventW L"4c8924d5" err:eventlog:ReportEventW L"6f" err:eventlog:ReportEventW L"182" err:eventlog:ReportEventW L"system.entrypointnotfound" err:eventlog:ReportEventW L"NIL" fixme:advapi:DeregisterEventSource (0xcafe4242) stub ... Unhandled Exception: System.EntryPointNotFoundException: Unable to find an entry point named 'GetSystemDEPPolicy' in DLL 'kernel32.dll'.
at MitigationInterface.Kernel32.GetSystemDEPPolicy()
at MitigationInterface.SysMitigation_DEP..ctor(OSVERSIONINFOEX OsInfoEx, Boolean EnableUnsafeSettings)
at MitigationInterface.SystemMitigations..ctor()
at ConsoleApp.Program.Main(String[] args) wine: Unhandled exception 0xe0434f4d at address 0x7b836f02 (thread 0009), starting debugger... Unhandled exception: 0xe0434f4d in 32-bit code (0x7b836f02). --- snip ---
MSDN: http://msdn.microsoft.com/en-us/library/bb736298.aspx
"Enhanced Mitigation Experience Toolkit v2.0" Download:
https://www.microsoft.com/downloads/en/details.aspx?FamilyID=c6f0a6ee-05ac-4...
Needs .NET 2.0 Framework as prerequisite (e.g. winetricks dotnet20)
Regards
http://bugs.winehq.org/show_bug.cgi?id=24370
Anastasius Focht focht@gmx.net changed:
What |Removed |Added ---------------------------------------------------------------------------- Keywords| |dotnet, download URL| |https://www.microsoft.com/d | |ownloads/en/details.aspx?Fa | |milyID=c6f0a6ee-05ac-4eb6-a | |cd0-362559fd2f04&displayLan | |g=en
--- Comment #1 from Anastasius Focht focht@gmx.net 2010-09-12 08:32:36 CDT --- Hello,
filling some fields...
Regards
http://bugs.winehq.org/show_bug.cgi?id=24370
Anastasius Focht focht@gmx.net changed:
What |Removed |Added ---------------------------------------------------------------------------- Blocks| |24371
http://bugs.winehq.org/show_bug.cgi?id=24370
--- Comment #2 from Austin English austinenglish@gmail.com 2010-09-12 14:28:03 CDT --- Patch sent: http://source.winehq.org/patches/data/65998
http://bugs.winehq.org/show_bug.cgi?id=24370
Austin English austinenglish@gmail.com changed:
What |Removed |Added ---------------------------------------------------------------------------- Status|NEW |RESOLVED Resolution| |FIXED
--- Comment #3 from Austin English austinenglish@gmail.com 2010-09-22 16:30:20 CDT --- Fixed by http://source.winehq.org/git/wine.git/?a=commitdiff;h=e99612c4c843ac28c6e29e...
http://bugs.winehq.org/show_bug.cgi?id=24370
Alexandre Julliard julliard@winehq.org changed:
What |Removed |Added ---------------------------------------------------------------------------- Status|RESOLVED |CLOSED
--- Comment #4 from Alexandre Julliard julliard@winehq.org 2010-10-01 13:56:45 CDT --- Closing bugs fixed in 1.3.4.
http://bugs.winehq.org/show_bug.cgi?id=24370
Anastasius Focht focht@gmx.net changed:
What |Removed |Added ---------------------------------------------------------------------------- Fixed by SHA1| |e99612c4c843ac28c6e29ec3dd0 | |bf78546d92646
--- Comment #5 from Anastasius Focht focht@gmx.net 2011-10-11 14:45:20 CDT --- Hello,
filling/correcting fields ...
Regards
https://bugs.winehq.org/show_bug.cgi?id=24370
Anastasius Focht focht@gmx.net changed:
What |Removed |Added ---------------------------------------------------------------------------- URL|https://www.microsoft.com/d |https://web.archive.org/web |ownloads/en/details.aspx?Fa |/20210709135709/https://dow |milyID=c6f0a6ee-05ac-4eb6-a |nload.informer.com/win-1192 |cd0-362559fd2f04&displayLan |959520-4ff9e9cf-6ebe2418/em |g=en |et_setup.msi
--- Comment #6 from Anastasius Focht focht@gmx.net --- Hello folks,
adding stable download via Internet Archive for documentation.
Looks like archive.org was never able to snapshot original EMET v2 download from Microsoft.
https://web.archive.org/web/20100906150410/http://www.microsoft.com/download...
--- snip --- $ wget http://web.archive.org/cdx/search/cdx?url=%22download.microsoft.com/download..." -q -O - | grep application/
com,microsoft,download)/download/9/6/5/96543178-3010-4367-9b0c-5f67331ee67a/emet%20setup.msi 20111120172637 http://download.microsoft.com/download/9/6/5/96543178-3010-4367-9B0C-5F67331... application/octet-stream 404 AS23RBWCBWELK7XKNWH7RATCJJFMDZI5 1039
com,microsoft,download)/download/9/6/5/96543178-3010-4367-9b0c-5f67331ee67a/emet%20setup.msi 20120130155531 http://download.microsoft.com//download/9/6/5/96543178-3010-4367-9B0C-5F6733... application/octet-stream 404 AS23RBWCBWELK7XKNWH7RATCJJFMDZI5 891
com,microsoft,download)/download/9/6/5/96543178-3010-4367-9b0c-5f67331ee67a/emet%20setup.msi 20120130155548 http://download.microsoft.com/download/9/6/5/96543178-3010-4367-9B0C-5F67331... application/octet-stream 404 AS23RBWCBWELK7XKNWH7RATCJJFMDZI5 892 --- snip ---
Their habit of taking stuff off the Internet ...
Fortunately I've found EMET v2.1 from this site:
https://web.archive.org/web/20170920111932/http://emet1.software.informer.co...
and created a snapshot:
https://web.archive.org/web/20210709135709/https://download.informer.com/win...
Can be reproduced with v2.1 as well:
--- snip --- $ grep -ral GetSystemDEPPolicy .wine/drive_c
.wine/drive_c/Program Files (x86)/EMET/MitigationInterface.dll --- snip ---
$ sha1sum emet_setup.msi cf2952e4a3616b60292fbd4ba0d7ad6188ded64f emet_setup.msi
$ du -sh emet_setup.msi 5.0M emet_setup.msi
Regards