Gentoo Archives: gentoo-dev

From: John Richard Moser <nigelenki@×××××××.net>
To: John Richard Moser <nigelenki@×××××××.net>
Cc: gentoo-security@l.g.o, gentoo-dev@l.g.o
Subject: Re: [gentoo-dev] Stack smash protected daemons
Date: Thu, 23 Sep 2004 04:04:03
Message-Id: 41524BDC.2010608@comcast.net
In Reply to: Re: [gentoo-dev] Stack smash protected daemons by John Richard Moser
1 -----BEGIN PGP SIGNED MESSAGE-----
2 Hash: SHA1
3
4
5
6 John Richard Moser wrote:
7 |
8
9 | 1. Protect daemons and chmod +s programs
10 |
11 | For our purposes, let's define a daemon as any program which interacts
12 | with (processes data from) non-root processes, including processes from
13 | other machines.
14
15 1. Strike "non-root processes"
16 2. Replace with "processes not owned by the same user upon request"
17
18 Sorry, how asinine of me to make such an elementary error in wording.
19 Many processes interact with another process owned by the user, mainly X.
20
21 The original wording also implied clients like web browsers. The "upon
22 request" clause makes it clear that we're dealing with daemons/servers.
23
24 |
25
26 - --
27 All content of all messages exchanged herein are left in the
28 Public Domain, unless otherwise explicitly stated.
29
30 -----BEGIN PGP SIGNATURE-----
31 Version: GnuPG v1.2.6 (GNU/Linux)
32 Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org
33
34 iD8DBQFBUkvbhDd4aOud5P8RAqRJAJsHNp7f0nfGDUgx6zP6trXA0G+18ACfTL2P
35 qeFDDFTftWl6OgGjUDa9rg0=
36 =hoEH
37 -----END PGP SIGNATURE-----
38
39 --
40 gentoo-dev@g.o mailing list