看板FB_security
标 题Re: bin/64150: [PATCH] ls(1) coredumps when started via execve(2)
发信站NCTU CSIE FreeBSD Server (Mon Mar 15 12:07:56 2004)
转信站ptt!FreeBSD.csie.NCTU!not-for-mail
On 12 Mar 2004, Ruslan Ermilov wrote:
| On Fri, Mar 12, 2004 at 11:07:25AM -0500, Tom Rhodes wrote:
| >
| > Will it 'break' anything?
|
| Sure it will, the question is should we care about something that's
| already broken. ;)
It will break almost all shellcodes trying to be the shorter ones
(as they pass NULL for argv and envp). So we can view it as a small
security improvement (just kidding).
--
Marc Bevand
http://www.epita.fr/~bevand_m
Computer Science School EPITA - System, Network and Security Dept.
_______________________________________________
[email protected] mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-security
To unsubscribe, send any mail to "
[email protected]"