Re: Protecting against kernel NULL-pointer derefs

看板FB_security作者時間16年前 (2009/09/15 21:32), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串5/22 (看更多)
Dag-Erling Sm繪rgrav wrote: >> 'amount' => 2, 'of late' is more figure of speech than anything >> else. For me, amount was high enough to get interested and 'of late' >> may be because I've not been looking long enough. > > A search of FreeBSD security advisories shows two in the last four > years, plus the current unreleased issue. I agree that there is no > reason to allow applications to mmap() at address 0, but surely there > must be a better way to make your case than to sow FUD? I have no intention to sow FUD. Three such advisories is not much, but if there is a simple/inexpensive way to ensure that such bugs are not exploitable to gain root, I think 'we' should consider it. -- Pieter _______________________________________________ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"
文章代碼(AID): #1AhvTJzm (FB_security)
討論串 (同標題文章)
文章代碼(AID): #1AhvTJzm (FB_security)