Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 04 Feb 2003 17:25:02 -0800
From:      Terry Lambert <tlambert2@mindspring.com>
To:        Justin Lundy <jbl@cvs.tegatai.com>
Cc:        freebsd-hackers@freebsd.org
Subject:   Re: [eugene@securityarchitects.com: Re: Preventing exploitation with  rebasing]
Message-ID:  <3E4067EE.E4C2D40D@mindspring.com>
References:  <20030204195114.GA92636@cvs.tegatai.com>

next in thread | previous in thread | raw e-mail | index | archive | help
Justin Lundy wrote:
> "Add a possibility to add a random offset to the stack on exec. This makes
> it slightly harder to write generic buffer overflows. This doesn't really
> give any real security, but it raises the bar for script-kiddies and it's
> really cheap.

It's also security through obscurity.  All you have to do to get
around it is write PIC and use your own system calls.

-- Terry

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-hackers" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3E4067EE.E4C2D40D>