[rsbac] Kconfig bug in pre 1.3.3 patch

Michal Purzynski michal at rsbac.org
Thu May 3 18:20:27 CEST 2007


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On May 3, 2007, at 4:05 PM, Tomasz Kłoczko wrote:

>
> BTW PAX: any theoretical chance use PaX and prelink ?
>
> kloczek
>
i don't think it's a good idea. recall please how is prelink working - 
resolving addresses, reserving them and putting hardcoded entry into 
executable (to avoid resolving them every time applications starts, 
thus speeding up this process). from the other hand one of the PaX 
strenghts is making them random - to minimize a chance of attacker 
having a predictable address of usefull function she could harm us 
with.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (Darwin)

iD8DBQFGOgvR+8juDbyM0PsRApAEAJ0U4SgWN3nTNLN//tS8VjUbBP9JqgCfWSbB
/uNKMozmIPqr4lVce+csw54=
=ccxp
-----END PGP SIGNATURE-----



More information about the rsbac mailing list