hacking security forum

Re: [Full-Disclosure] linux noexec (Re: January 15 is Personal Firewall Day)

From: Martin Mačok <martin.macok@underground.cz>
Date: Tue Jan 20 2004 - 02:05:38 CST

On Mon, Jan 19, 2004 at 06:46:40PM -0500, Valdis.Kletnieks@vt.edu wrote:

> On Mon, 19 Jan 2004 20:02:19 +0100, Michal Zalewski said:
>
> > How is it an issue? I think it is a feature - it is noexec that is
> > pretty badly broken by design, and nearly impossible to render
> > secure...
>
> In what way is it "badly broken"?

Flagging the file to be an executable or not does not guarantee that
no one will ever read and execute the instructions written in the file.

-- 
         Martin Mačok                 http://underground.cz/
   martin.macok@underground.cz        http://Xtrmntr.org/ORBman/
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html
Received on Tue Jan 20 09:05:41 2004

This archive was generated by hypermail 2.1.8 : Tue Jan 20 2004 - 10:01:01 CST

Custom Search