Re: [PATCH] [SECURITY] suid procs exec'd with bad 0,1,2 fds

Aaron J. Grier (agrier@cse.ogi.edu)
Wed, 5 Aug 1998 13:22:23 -0700


On Wed, Aug 05, 1998 at 11:54:49AM -0700, Marcin Dalecki wrote:

> But there is currently already a patch out there for GCC, which allows
> you to enable bounds checking on arrays. So If You where a responsible
> Linux distribution creator --- get this patch and compile all the ftpd
> or whotever with it enabled.

<ObPlug>

Here at OGI, the immunix project [1] is working on assembling a complete
RedHat 5.1 distribution with everything compiled with our StackGuard
compiler. [2]

</ObPlug>

[1] http://www.cse.ogi.edu/DISC/projects/immunix/
[2] http://www.cse.ogi.edu/DISC/projects/immunix/StackGuard/

----
Aaron J. Grier | agrier@cse.ogi.edu
"I generally find that a goat isn't really necessary, but bloodying
one's fingers while installing the system and SCSI chain does seem to
correlate with more reliable operation." -- Leonard N. Zubkoff

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.rutgers.edu
Please read the FAQ at http://www.altern.org/andrebalsa/doc/lkml-faq.html