Re: [PATCH] [SECURITY] suid procs exec'd with bad 0,1,2 fds

Dean Gaudet (dgaudet-list-linux-kernel@arctic.org)
Wed, 5 Aug 1998 16:07:59 -0700 (PDT)


On Wed, 5 Aug 1998, Marcin Dalecki wrote:

>
> I quite agree with Linus about the issue. I just don't see why it should
> be better to apply a quite kludgy solution to the kernel instead of fixing
> the opposing applications. At least it can be done for Linux.

False. There are applications for linux for which we do not have source.
There will be more in the future. Head out of sand.

> Second just an idea: If I understand the issue right the problem is mainly
> araising from the leak of array bounds checking in C and lazy coders which

It's not just laziness. It's the same problem as any other bug: someone
made a mistake.

Dean

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.rutgers.edu
Please read the FAQ at http://www.altern.org/andrebalsa/doc/lkml-faq.html