Gentoo Archives: gentoo-dev

From: "Anthony G. Basile" <blueness@g.o>
To: gentoo-dev@l.g.o
Subject: Re: [gentoo-dev] enabling FEATURES=sfperms for all Linux profiles
Date: Tue, 26 Oct 2010 11:24:03
Message-Id: 4CC6BA4E.70208@gentoo.org
In Reply to: [gentoo-dev] enabling FEATURES=sfperms for all Linux profiles by Mike Frysinger
1 -----BEGIN PGP SIGNED MESSAGE-----
2 Hash: SHA1
3
4 On 10/26/2010 02:45 AM, Mike Frysinger wrote:
5 > hardened systems (as well as my non-hardened ones) have been running
6 > FEATURES=sfperms for years with no known bugs. so unless someone has
7 > a compelling reason otherwise, i'll be enabling this in
8 > profiles/default/linux/ for all linux systems.
9 > -mike
10 >
11 Good idea. Is this in response to the $ORIGIN root exploit in glibc?
12 (bug #341755).
13
14 - --
15 Anthony G. Basile, Ph.D.
16 Gentoo Developer
17 -----BEGIN PGP SIGNATURE-----
18 Version: GnuPG v2.0.16 (GNU/Linux)
19 Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/
20
21 iEYEARECAAYFAkzGuk4ACgkQl5yvQNBFVTWmFwCdEMUSLVu8TgQHo2xRpSvjsAtd
22 kRAAn1F1R/5IOovKB39lqePYyMs6B8w7
23 =LDmc
24 -----END PGP SIGNATURE-----

Replies

Subject Author
[gentoo-dev] Re: enabling FEATURES=sfperms for all Linux profiles Duncan <1i5t5.duncan@×××.net>