Gentoo Archives: gentoo-hardened

From: Petre Rodan <kaiowas@g.o>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] SELinux problem -> avc: denied {execmem}
Date: Mon, 22 May 2006 09:34:03
Message-Id: 20060522093050.GB21574@peter.avira.local
In Reply to: Re: [gentoo-hardened] SELinux problem -> avc: denied {execmem} by pageexec@freemail.hu
1 Hi,
2
3 On Mon, May 22, 2006 at 11:59:59AM +0200, pageexec@××××××××.hu wrote:
4 > On 22 May 2006 at 9:04, Petre Rodan wrote:
5 > > > > how about /sbin/runscript, /sbin/init, /bin/bash?
6 > > > Same result, GNU_STACK is in the header.
7 > >
8 > > strange. please file a bug report and make sure you include emerge --info in it.
9 >
10 > aren't execmem denials due to text relocations? i'd run a scanelf -t on
11 > all affected executables and libraries just in case...
12
13 I hit the GNU_STACK problem about a year ago and recompiling old binaries helped. oh well. [1][2]
14
15 [1] http://www.nsa.gov/selinux/list-archive/0502/10386.cfm
16 [2] http://www.nsa.gov/selinux/list-archive/0502/10553.cfm
17
18 cheers,
19 peter
20
21 --
22 petre rodan
23 <kaiowas@g.o>
24 Developer,
25 Hardened Gentoo Linux