From owner-freebsd-security Fri Jun 26 09:38:09 1998 Return-Path: Received: (from majordom@localhost) by hub.freebsd.org (8.8.8/8.8.8) id JAA07184 for freebsd-security-outgoing; Fri, 26 Jun 1998 09:38:09 -0700 (PDT) (envelope-from owner-freebsd-security@FreeBSD.ORG) Received: from hood.1lo.lublin.pl (sopel@hood.1lo.lublin.pl [193.59.31.126]) by hub.freebsd.org (8.8.8/8.8.8) with ESMTP id JAA07148 for ; Fri, 26 Jun 1998 09:37:53 -0700 (PDT) (envelope-from sopel@hood.1lo.lublin.pl) Received: from localhost (sopel@localhost) by hood.1lo.lublin.pl (8.9.0/8.8.8) with SMTP id RAA18715; Fri, 26 Jun 1998 17:39:44 GMT (envelope-from sopel@hood.1lo.lublin.pl) Date: Fri, 26 Jun 1998 17:39:44 +0000 (GMT) From: Wojciech Sobczuk To: fpscha@schapachnik.com.ar cc: Niall Smart , ncb05@uow.edu.au, security@FreeBSD.ORG Subject: Re: non-executable stack? In-Reply-To: <199806251653.NAA00182@localhost.schapachnik.com.ar> Message-ID: MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Content-Transfer-Encoding: 8bit X-MIME-Autoconverted: from QUOTED-PRINTABLE to 8bit by hub.freebsd.org id JAA07175 Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org On Thu, 25 Jun 1998, Fernando P. Schapachnik wrote: > En un mensaje anterior Niall Smart escribi¢: > > be to only turn it on for set[ug]id executables. There are a number > > of other "features" like this that would be useful, for example the > > ability to specify that only printable ascii characters can appear in > > the arguments or environment of a process before it can exec another. > > Don't forget about "international" users. We consider strings like > "compa¤¡a" perfectly valid ;-) > > Regards! > > Fernando P. Schapachnik > fpscha@schapachnik.com.ar > hmm.. i always thought that '$' and '!' ARE printable characters.. check out `man 3 isprint` wojtek - Wojtek Sobczuk aka sopel (a franc-tireur) - - sopel@hood.1lo.lublin.pl || wojtek@gaja.ipan.lublin.pl - To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe security" in the body of the message