Re: [parisc-linux] Security Hole in binfmt_som.c ?

From: Alan Cox (alan_at_lxorguk.ukuu.org.uk)
Date: 08/30/03

  • Next message: Matthew Wilcox: "Re: [parisc-linux] Security Hole in binfmt_som.c ?"
    To: Matthew Wilcox <willy@debian.org>
    Date:	Sat, 30 Aug 2003 14:49:50 +0100
    
    

    On Sad, 2003-08-30 at 14:15, Matthew Wilcox wrote:
    > On Sat, Aug 30, 2003 at 02:42:37PM +0200, Ruediger Scholz wrote:
    > > binfmt_som.c:216:2: #error "Fix security hole before enabling me"
    > > What's this message about?
    >
    > I don't know. I wish someone would tell me. You'd think they'd have the
    > decency to contact the person listed as the author at the top of the file.

    Actually explanations were posted in the previous discussion on this on
    parisc-list.

    Someone has to do the equivalent of the 2.4.22 binfmt_elf changes if
    neccessary so that another thread can't change the file handles or
    steal the exec fd being passed to the loader.

    -
    To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
    the body of a message to majordomo@vger.kernel.org
    More majordomo info at http://vger.kernel.org/majordomo-info.html
    Please read the FAQ at http://www.tux.org/lkml/


  • Next message: Matthew Wilcox: "Re: [parisc-linux] Security Hole in binfmt_som.c ?"

    Relevant Pages

    • Re: [PATCH] include: pci_find_device remove (include/asm-i386/ide.h)
      ... On Sad, 2005-09-10 at 19:30 -0600, Matthew Wilcox wrote: ... >> whether to do the IDE tertiary scan which isn't safe on a PCI bus box. ... send the line "unsubscribe linux-kernel" in ...
      (Linux-Kernel)
    • Re: [PATCH] incorrect use of sizeof() in ioctl definitions
      ... > Matthew Wilcox, I see "Clearly it's too late to change the ioctl ... War is real, war is primarily not about defeat or ... send the line "unsubscribe linux-kernel" in ...
      (Linux-Kernel)
    • Re: C99 Initialisers
      ... On Tuesday 12 Aug 2003 12:27, Matthew Wilcox wrote: ... >> I would love to see that kind of change made for pci drivers. ... C-99 format will make it easier to ensure the appropriate values are put into ... send the line "unsubscribe linux-kernel" in ...
      (Linux-Kernel)
    • Re: down_timeout
      ... >> Matthew Wilcox ... >> It's still not great because it doesn't preserve ordering. ... Reason: ... send the line "unsubscribe linux-kernel" in ...
      (Linux-Kernel)
    • Re: Possible dcache BUG
      ... > sucker still has positive refcount and leave it alone. ... the sad part is that doing another list_delwon't even necessarily ... go *boom*. ... send the line "unsubscribe linux-kernel" in ...
      (Linux-Kernel)