Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 5 Sep 1999 14:42:44 -0400 (EDT)
From:      Garrett Wollman <wollman@khavrinen.lcs.mit.edu>
To:        "Brian F. Feldman" <green@FreeBSD.org>
Cc:        Garrett Wollman <wollman@khavrinen.lcs.mit.edu>, freebsd-security@FreeBSD.org
Subject:   Re: FW: Local DoS in FreeBSD
Message-ID:  <199909051842.OAA28577@khavrinen.lcs.mit.edu>
In-Reply-To: <Pine.BSF.4.10.9909050751280.86690-100000@janus.syracuse.net>
References:  <199909050312.XAA26309@khavrinen.lcs.mit.edu> <Pine.BSF.4.10.9909050751280.86690-100000@janus.syracuse.net>

next in thread | previous in thread | raw e-mail | index | archive | help
<<On Sun, 5 Sep 1999 07:54:40 -0400 (EDT), "Brian F. Feldman" <green@FreeBSD.org> said:

> Err... But some users need lots of of file descriptors and/or processes.
> That would still leave this hole open.

Don't give those resources to untrusted users.  (And while you're at
it, how about fixing the code that causes a panic here rather than
failing gracefully?)

-GAWollman

--
Garrett A. Wollman   | O Siem / We are all family / O Siem / We're all the same
wollman@lcs.mit.edu  | O Siem / The fires of freedom 
Opinions not those of| Dance in the burning flame
MIT, LCS, CRS, or NSA|                     - Susan Aglukark and Chad Irschick


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199909051842.OAA28577>