Re: [PATCH] [SECURITY] suid procs exec'd with bad 0,1,2 fds

Perry Harrington (pedward@sun4.apsoft.com)
Tue, 4 Aug 1998 15:21:01 -0700 (PDT)


Personally, the question is this for me:

We're on a dev kernel right now, correct? (yes) Why do we have a dev kernel?
(to add new features and "fix" things) Is it appropriate to try the stack
patch in a dev kernel, or wait another year for 2.3? (stick it in with it as
default, wait for the screams -- if they come, fix or non-default)

This is a very compelling feature in my mind, and adds a measure of credibility
to Linux as an OS for mission critical use. Unfortunately I know a few ISP types
that scoff at Linux because it's hackable, and their BSDI & FreeBSD is less
hackable. (one's proprietary, the other has little userbase, go figure)

This feature would make a great press release!

>
> To quote Linus - "Ostrich" 8) - Sun are doing the right thing.
>
> Remind me to build all my binaries to run in Solaris64 emulation mode (I
> assume your emulation wont be broken right ?).
>
> I've run Linux boxes with the stack patch for months, I've helped design
> commercial product using it. Its on some of the ISP boxes I run.
>
> Alan

-- 
Perry Harrington       Linux rules all OSes.    APSoft      ()
email: perry@apsoft.com 			Think Blue. /\

- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.rutgers.edu Please read the FAQ at http://www.altern.org/andrebalsa/doc/lkml-faq.html