[31193] in bugtraq
Re: Buffer overflow prevention
daemon@ATHENA.MIT.EDU (noir)
Thu Aug 14 17:52:03 2003
Date: Fri, 15 Aug 2003 01:01:08 +0300 (EEST)
From: noir <noir@gsu.linux.org.tr>
To: bugtraq@securityfocus.com
Message-ID: <Pine.LNX.4.44.0308150053050.18145-100000@gsu.linux.org.tr>
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
I believe that Mr. Raadt meant PAX by W^X.
We all enjoy ascii art but I wanted to note that renaming somebody
elses work is not so ethical.
so for the real thing please consider checking:
http://pageexec.virtualave.net/
my linux box have 0 remotely exploitable vulnerabilities in its default
install since the begining of time and space. thanks to segmentation, ASLR
from the PAX project.
Thanks,
- noir
-----Original Message-----
From: Theo de Raadt [mailto:deraadt@cvs.openbsd.org]
Sent: Thursday, August 14, 2003 12:37 PM
To: Mariusz Woloszyn
Subject: Re: Buffer overflow prevention
> I believe the best protection (at this time) is to combine ProPolice
> with a W^X technology.