From owner-freebsd-security@FreeBSD.ORG Thu Jun 5 06:23:38 2003 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id AC6A737B401 for ; Thu, 5 Jun 2003 06:23:38 -0700 (PDT) Received: from mail.be.ubizen.com (batty.be.ubizen.com [212.113.70.10]) by mx1.FreeBSD.org (Postfix) with ESMTP id 88A2F43F75 for ; Thu, 5 Jun 2003 06:23:31 -0700 (PDT) (envelope-from niels.heinen@ubizen.com) Received: (from local) by mail.be.ubizen.com id h55DNTf6024387 for ; Thu, 5 Jun 2003 15:23:29 +0200 Received: from UNKNOWN(10.0.0.108), claiming to be "amaya.be.ubizen.com" via SMTP by batty.netvision.be, id smtpd24380aaa; Thu Jun 5 13:23:04 2003 Received: (qmail 6275 invoked from network); 5 Jun 2003 13:23:03 -0000 Received: from unknown (HELO ubi) (10.0.0.10) by amaya.be.ubizen.com with SMTP; 5 Jun 2003 13:23:01 -0000 Received: from ubizen.com (demandred.be.ubizen.com [212.113.70.130]) <0HG0001ORFUD7A@ubi.be.ubizen.com>; Thu, 05 Jun 2003 15:23:01 +0200 (MET DST) Date: Thu, 05 Jun 2003 15:18:58 +0200 From: Niels Heinen In-reply-to: <003601c32b48$106ec380$0a00000a@eps> To: Erik Paulsen Skaalerud Message-id: <3EDF4342.808@ubizen.com> MIME-version: 1.0 Content-type: text/plain; charset=us-ascii; format=flowed Content-transfer-encoding: 7BIT X-Accept-Language: en-us, en User-Agent: Mozilla/5.0 (X11; U; FreeBSD i386; en-US; rv:1.3) Gecko/20030502 References: <003601c32b48$106ec380$0a00000a@eps> X-Sanitizer: Out cc: freebsd-security@freebsd.org Subject: Re: Non-Executable Stack Patch X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Security issues [members-only posting] List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 05 Jun 2003 13:23:39 -0000 Unfortunately I never got further then creating a port of gcc 3.2.3 that includes the patch (I believe this was suggested on the list a few weeks ago). Its available here: http://www.heinen.ws/freebsd/ Just fetch the tgz file, unpack it in /usr/ports/lang/ and do a make Niels Erik Paulsen Skaalerud wrote: >>From: owner-freebsd-security@freebsd.org >>[mailto:owner-freebsd-security@freebsd.org] On Behalf Of Tim Baur >>Sent: Thursday, June 05, 2003 6:24 AM >>To: freebsd-security@freebsd.org >>On Wed, 4 Jun 2003, Tony Meman wrote: >> >> >>>I was wondering if there's any non-executable stack patch for >>>FreeBSD's kernel. >>> >>> >>http://www.trl.ibm.com/projects/security/ssp/buildfreebsd.html >> >>-tbaur >> >> > >Can anyone here share their experiences with this patch? I've heard very >little talk about it really, I'm looking for others oppinions before I try >to patch gcc with this. Any major slowdowns on the userland? And if its >major, how much? > >Erik. > > >_______________________________________________ >freebsd-security@freebsd.org mailing list >http://lists.freebsd.org/mailman/listinfo/freebsd-security >To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org" > >