From owner-freebsd-arch Sun Jun 30 2:50:25 2002 Delivered-To: freebsd-arch@freebsd.org Received: from mx1.FreeBSD.org (mx1.FreeBSD.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id C104B37B401 for ; Sun, 30 Jun 2002 02:50:23 -0700 (PDT) Received: from park.rambler.ru (park.rambler.ru [217.73.193.2]) by mx1.FreeBSD.org (Postfix) with ESMTP id 2AA0643E0A for ; Sun, 30 Jun 2002 02:50:22 -0700 (PDT) (envelope-from is@rambler-co.ru) Received: from is (is.stack.net [217.73.193.40]) by park.rambler.ru (8.11.6/8.9.3) with ESMTP id g5U9oCk24937; Sun, 30 Jun 2002 13:50:17 +0400 (MSD) (envelope-from is@rambler-co.ru) Date: Sun, 30 Jun 2002 13:50:12 +0400 (MSD) From: Igor Sysoev X-Sender: is@is To: Terry Lambert Cc: arch@FreeBSD.ORG Subject: Re: Time to make the stack non-executable? In-Reply-To: <3D1E3126.C96FFAA5@mindspring.com> Message-ID: MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Sender: owner-freebsd-arch@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG On Sat, 29 Jun 2002, Terry Lambert wrote: > Doug Barton wrote: > > Subject: We're famous > >http://story.news.yahoo.com/news?tmpl=story&ncid=70&e=2&cid=70&u=/cn/20020629/tc_cn/940585 Of course non-executable stack is good idea but Apache's chunked exploit does not execute any code on stack. Code runs in Apache malloc()ed BUFF structure. Igor Sysoev http://sysoev.ru To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-arch" in the body of the message