Elaborating a bit further: security evaluation of SafeStack showed that it's not sufficiently secure to prevent backward-edge CFI attacks. In particular, leaks of the 'safe' stack address are present throughout the system runtime and are difficult to fully address--making the scheme useless against attackers with arbitrary R/W.
Comment 1 by vtsyrklevich@chromium.org
, Nov 27