From owner-freebsd-security Tue Jul 21 15:29:56 1998 Return-Path: Received: (from majordom@localhost) by hub.freebsd.org (8.8.8/8.8.8) id PAA29386 for freebsd-security-outgoing; Tue, 21 Jul 1998 15:29:56 -0700 (PDT) (envelope-from owner-freebsd-security@FreeBSD.ORG) Received: from lariat.lariat.org (ppp1000.lariat.org@[206.100.185.2]) by hub.freebsd.org (8.8.8/8.8.8) with ESMTP id PAA29380 for ; Tue, 21 Jul 1998 15:29:54 -0700 (PDT) (envelope-from brett@lariat.org) Received: (from brett@localhost) by lariat.lariat.org (8.8.8/8.8.8) id QAA18807; Tue, 21 Jul 1998 16:29:32 -0600 (MDT) Message-Id: <199807212229.QAA18807@lariat.lariat.org> X-Sender: brett@mail.lariat.org X-Mailer: QUALCOMM Windows Eudora Pro Version 4.0.1 Date: Tue, 21 Jul 1998 16:22:41 -0600 To: security@FreeBSD.ORG From: Brett Glass Subject: Re: The 99,999-bug question: Why can you execute from the stack? In-Reply-To: <199807212210.XAA02709@indigo.ie> References: <8496.900909928@time.cdrom.com> Mime-Version: 1.0 Content-Type: text/plain; charset="us-ascii" Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org At 11:10 PM 7/21/98 +0000, Niall Smart wrote: >Auditing isn't the answer to programs which have been maldesigned >and malimplemented right from the very beginning, rm is. Sometimes >programs reach a point of no return, at which the only sensible >thing to do is start again with the benefit of experience. Sendmail >and QMail are good examples of the former and latter. Fortunately, now that UUCP mail addressing, BITNET, etc. have been so thoroughly deprecated, there's no real need for a mail router that translates addresses -- the primary purpose of Sendmail. Something much simpler will do now. --Brett Glass To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe security" in the body of the message