[PATCH] CVE-2015-7547 --- glibc getaddrinfo() stack-based buffer overflow
Mike Frysinger
vapier@gentoo.org
Wed Feb 17 22:20:00 GMT 2016
On 17 Feb 2016 16:43, Carlos O'Donell wrote:
> It's a very good idea. I think we should stack protect libresolv, libdl,
> nscd, etc, and we do already. Extending that is only going to be a good
> thing.
on a related note, seems like nscd should take advantage of seccomp &
namespaces when available. that would also significantly mitigate on
systems. any reason to not ?
-mike
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: Digital signature
URL: <http://sourceware.org/pipermail/libc-alpha/attachments/20160217/e5ce82e5/attachment.sig>
More information about the Libc-alpha
mailing list