[31180] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Buffer overflow prevention

daemon@ATHENA.MIT.EDU (Thomas =?iso-8859-1?Q?Sj=F6gren?=)
Thu Aug 14 16:32:20 2003

Date: Thu, 14 Aug 2003 20:27:49 +0200
From: Thomas =?iso-8859-1?Q?Sj=F6gren?= <thomas@northernsecurity.net>
To: Mariusz Woloszyn <emsi@ipartners.pl>
Message-ID: <20030814182749.GA10163@northernsecurity.net>
Reply-To: thomas@northernsecurity.net
Mime-Version: 1.0
Content-Type: multipart/signed; micalg=pgp-sha1;
	protocol="application/pgp-signature"; boundary="fUYQa+Pmc3FrFX/N"
Content-Disposition: inline
In-Reply-To: <Pine.LNX.4.50.0308141926230.2830-100000@dzyngiel.ipartners.pl>

--fUYQa+Pmc3FrFX/N
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

On Thu, Aug 14, 2003 at 07:26:47PM +0200, Mariusz Woloszyn wrote:
> I see no real reason why the major Linux companies are not using it for
> its products.

Me neither, but the Adamantix (www.adamantix.org) distribution is a step in=
 the right
direction. It's based on Debian and uses SSP, PaX and rebuilds every
packages with -fstack-protector for example. Its worth checking out.

/Thomas
--=20
=3D=3D thomas@northernsecurity.net | thomas@se.linux.org
=3D=3D Encrypted e-mails preferred | GPG KeyID: 114AA85C
--

--fUYQa+Pmc3FrFX/N
Content-Type: application/pgp-signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.2 (GNU/Linux)

iD8DBQE/O9SlEgljnRFKqFwRAj4KAJ0YSUq6Gg2xyj0aPIGIZWwBEwWYQQCgg6/H
ct4z24Dz7uClrXcS1Z7R738=
=YaRM
-----END PGP SIGNATURE-----

--fUYQa+Pmc3FrFX/N--

home help back first fref pref prev next nref lref last post