From owner-freebsd-arch@FreeBSD.ORG Sat May 12 17:55:55 2007 Return-Path: X-Original-To: arch@freebsd.org Delivered-To: freebsd-arch@FreeBSD.ORG Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 149AD16A404; Sat, 12 May 2007 17:55:55 +0000 (UTC) (envelope-from phk@critter.freebsd.dk) Received: from phk.freebsd.dk (phk.freebsd.dk [130.225.244.222]) by mx1.freebsd.org (Postfix) with ESMTP id A5FAE13C4C1; Sat, 12 May 2007 17:55:54 +0000 (UTC) (envelope-from phk@critter.freebsd.dk) Received: from critter.freebsd.dk (unknown [192.168.61.3]) by phk.freebsd.dk (Postfix) with ESMTP id 1180617383; Sat, 12 May 2007 17:55:53 +0000 (UTC) Received: from critter.freebsd.dk (localhost [127.0.0.1]) by critter.freebsd.dk (8.14.1/8.14.1) with ESMTP id l4CHttti063985; Sat, 12 May 2007 17:55:56 GMT (envelope-from phk@critter.freebsd.dk) To: Alfred Perlstein From: "Poul-Henning Kamp" In-Reply-To: Your message of "Sat, 12 May 2007 08:35:32 MST." <20070512153532.GQ21795@elvis.mu.org> Date: Sat, 12 May 2007 17:55:55 +0000 Message-ID: <63984.1178992555@critter.freebsd.dk> Sender: phk@critter.freebsd.dk Cc: Daniel Eischen , arch@freebsd.org, Robert Watson , "Sean C. Farley" Subject: Re: HEADS DOWN X-BeenThere: freebsd-arch@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Discussion related to FreeBSD architecture List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 12 May 2007 17:55:55 -0000 In message <20070512153532.GQ21795@elvis.mu.org>, Alfred Perlstein writes: >* Robert Watson [070512 08:11] wrote: >> >> >> Actually, I'm not convinced that crashing the program isn't the right >> answer. If an application corrupts memory managed by libc or other >> libraries, crashing is generally considered an entirely acceptable failure >> mode. > >Phk malloc has said otherwise for the past ... 10 years? > >I like how phk malloc has it as an option. But notice that it is not an option for programs that runs as root or setuid/setgid etc. Given the hostility of networks, I would support a more hardcore attitude to memory mismanagement these days. -- Poul-Henning Kamp | UNIX since Zilog Zeus 3.20 phk@FreeBSD.ORG | TCP/IP since RFC 956 FreeBSD committer | BSD since 4.3-tahoe Never attribute to malice what can adequately be explained by incompetence.