Gentoo Archives: gentoo-dev

From: "Jason A. Donenfeld" <Jason@×××××.com>
To: gentoo-dev@l.g.o
Subject: Re: [gentoo-dev] Can we get PIE on all SUID binaries by default, por favor?
Date: Sat, 28 Jan 2012 05:08:23
Message-Id: CAHmME9rDZpDTJ6Qq-WTodyM-eq2Uta9XZJibo34O8vVDYykX6g@mail.gmail.com
In Reply to: Re: [gentoo-dev] Can we get PIE on all SUID binaries by default, por favor? by "Anthony G. Basile"
1 On Sat, Jan 28, 2012 at 01:01, Anthony G. Basile <blueness@g.o>wrote:
2 >
3 >
4 > Exactly. Jason, if you want PIE across the board (with a few exceptions),
5 > switch to hardened.
6 >
7 >
8 What? Are you kidding?
9
10 Again, to reiterate, *I AM NOT SUGGESTING HAVING PIE ACROSS THE BOARD.*
11
12 What I suggest is that we have PIE for SUID executable. See the subject of
13 this thread.

Replies