Re: Non-executable stack

From: Mike Silbersack (silby_at_silby.com)
Date: 10/29/05

  • Next message: db: "Re: Non-executable stack"
    Date: Sat, 29 Oct 2005 07:36:55 -0500 (CDT)
    To: db <db@traceroute.dk>
    
    

    On Thu, 27 Oct 2005, db wrote:

    > On Thursday 27 October 2005 06:35, you wrote:
    >> I don't think it will ever be in FreeBSD, but I used ProPolice in the past:
    >
    > I really hope it will. AFAIK OpenBSD implemented this in late 2002 when 3.2
    > was released. I can see why FreeBSD doesn't want software protection of the
    > stack on systems like ia32, but on ia64 we have hardware support, so why not
    > be able to build a kernel with stack (and heap?) protection?

    The issue is not one of want, but one of practicality. FreeBSD updates
    to new versions of gcc relatively frequently, and having to update the
    propolice patch with each update (or waiting for an update) would be
    additional work.

    It appears that propolice has finally made its way into gcc 4.1, so
    hopefully that will be ready for FreeBSD 7.

    Mike "Silby" Silbersack
    _______________________________________________
    freebsd-security@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-security
    To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"


  • Next message: db: "Re: Non-executable stack"

    Relevant Pages

    • Re: ProPolice symbols in libc or libssp ?
      ... > I'm still working on integrating the ProPolice patch in FreeBSD CURRENT. ... I implemented libssp to circumvent the above problem without thinking ... compiles ports/misc/compat4x, the latter will be protected and will ...
      (freebsd-hackers)
    • Re: mbuf vulnerability
      ... > is what comes with freebsd, currently), which is what i was hoping:) ... Mike "Silby" Silbersack ...
      (FreeBSD-Security)
    • Re: patches
      ... freeBSD ... Mike "Silby" Silbersack ...
      (freebsd-hackers)

  • Quantcast