Decreasing risk of buffer overflows

Story: 'Highly critical' security bugs listed for Linux productsTotal Replies: 1
Author Content
hkwint

Mar 11, 2005
11:48 AM EDT
As many times, this are buffer overflows.

For that reason, I think, people should use GrSecurity (in kernel) and enable PaX, because PaX makes it more difficult to exploit buffer overflows, as far as I know.

So probably, PaX could be best included in the normal kernel, since buffer overflows appear very often.

But that's just my opinion I guess...
phsolide

Mar 11, 2005
3:01 PM EDT
If it's not a buffer overflow, it'll be "SQL Injection" or "cross site scripting" or some such. It's all of a type, and it all arises because application programmers are trying to do things that reduce to the halting problem.

Posting in this forum is limited to members of the group: [ForumMods, SITEADMINS, MEMBERS.]

Becoming a member of LXer is easy and free. Join Us!