[Gllug] Mysql Configure problem

Nix nix at esperi.demon.co.uk
Fri Apr 18 21:04:16 UTC 2003


On Mon, 14 Apr 2003, Tethys said:
> 
> Nix writes:
> 
>>>                            You may be Nix, and have a machine that's
>>> binary incompatible with anything else on the planet...
>>
>>Hey, that can be useful at times; buffer-overflow attacks don't work :)
> 
> Have you changed things in such a way that buffer overflow attacks
> *can't* work, or are you just relying on the fact that any standard
> exploits won't run on your machine?

The latter.

>                                     I.e., could an attacker with
> knowledge of your calling conventions and other ABI changes construct
> an exploit that would work? Just curious...

They could definitely write a working buffer exploit :( but the ABI
*is* different.

(It'll even be different after I've meddled with them to get TLS working...
and they *are* more efficient. Whether the increased efficiency is worth
it is debatable, and certainly e.g. a better register allocator as found
in GCC's new-regalloc branch has a hell of a lot more of an effect
than my piddling little calling-convention hacks...)


-- 
`It is an unfortunate coincidence that the date locarchive.h was
 written (in hex) matches Ritchie's birthday (in octal).'
               -- Roland McGrath on the libc-alpha list

-- 
Gllug mailing list  -  Gllug at linux.co.uk
http://list.ftech.net/mailman/listinfo/gllug




More information about the GLLUG mailing list