Dailydave mailing list archives
Re: [oss-security] Re: [oss-security] Linux 2.6.30+/SELinux/RHEL5 test kernel 0day, exploiting the unexploitable
From: yersinia <yersinia.spiros () gmail com>
Date: Wed, 22 Jul 2009 18:30:39 +0200
On Wed, Jul 22, 2009 at 5:04 PM, Todd Sabin<tsabin () optonline net> wrote:
spender () grsecurity net (Brad Spengler) writes:(Really there should have been a CVE for the lack of -fno-delete-null-pointer-checks instead of pretending the only problem was /dev/net/tun....Just as a side note, it seems like gcc is missing an option, to me. Okay, it can figure out that some NULL pointer checks seem to be useless, and either optimize them away or leave them in. What about issuing a warning? Where's -Wuseless-null-pointer-check?
Coverity opinion on this specific issue http://blog.coverity.com/posts/general/would-you-like-to-know-about-0day-defects-months-in-advance Regards
Todd -- Todd Sabin <tsabin () optonline net>
_______________________________________________ Dailydave mailing list Dailydave () lists immunitysec com http://lists.immunitysec.com/mailman/listinfo/dailydave
Current thread:
- Re: [oss-security] Linux 2.6.30+/SELinux/RHEL5 test kernel 0day, exploiting the unexploitable Marcus Meissner (Jul 20)
- Re: [oss-security] Linux 2.6.30+/SELinux/RHEL5 test kernel 0day, exploiting the unexploitable yersinia (Jul 22)
- Re: [oss-security] Linux 2.6.30+/SELinux/RHEL5 test kernel 0day, exploiting the unexploitable Brad Spengler (Jul 22)
- Message not available
- Re: [oss-security] Re: [oss-security] Linux 2.6.30+/SELinux/RHEL5 test kernel 0day, exploiting the unexploitable yersinia (Jul 23)
- Message not available