From owner-freebsd-security@FreeBSD.ORG Mon Dec 19 20:25:13 2011 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 89BAA1065676 for ; Mon, 19 Dec 2011 20:25:13 +0000 (UTC) (envelope-from kostikbel@gmail.com) Received: from mail.zoral.com.ua (mx0.zoral.com.ua [91.193.166.200]) by mx1.freebsd.org (Postfix) with ESMTP id 0235B8FC14 for ; Mon, 19 Dec 2011 20:25:12 +0000 (UTC) Received: from alf.home (alf.kiev.zoral.com.ua [10.1.1.177]) by mail.zoral.com.ua (8.14.2/8.14.2) with ESMTP id pBJK142n059568 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO); Mon, 19 Dec 2011 22:01:04 +0200 (EET) (envelope-from kostikbel@gmail.com) Received: from alf.home (kostik@localhost [127.0.0.1]) by alf.home (8.14.5/8.14.5) with ESMTP id pBJK140O069720; Mon, 19 Dec 2011 22:01:04 +0200 (EET) (envelope-from kostikbel@gmail.com) Received: (from kostik@localhost) by alf.home (8.14.5/8.14.5/Submit) id pBJK14K4069719; Mon, 19 Dec 2011 22:01:04 +0200 (EET) (envelope-from kostikbel@gmail.com) X-Authentication-Warning: alf.home: kostik set sender to kostikbel@gmail.com using -f Date: Mon, 19 Dec 2011 22:01:04 +0200 From: Kostik Belousov To: Xin LI Message-ID: <20111219200104.GK50300@deviant.kiev.zoral.com.ua> References: <4EEF9375.1010203@sentex.net> Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="2lcUOdKuHx/sbuIt" Content-Disposition: inline In-Reply-To: User-Agent: Mutt/1.4.2.3i X-Virus-Scanned: clamav-milter 0.95.2 at skuns.kiev.zoral.com.ua X-Virus-Status: Clean X-Spam-Status: No, score=-3.9 required=5.0 tests=ALL_TRUSTED,AWL,BAYES_00 autolearn=ham version=3.2.5 X-Spam-Checker-Version: SpamAssassin 3.2.5 (2008-06-10) on skuns.kiev.zoral.com.ua Cc: "freebsd-security@freebsd.org" Subject: Re: logging _rtld errors X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 19 Dec 2011 20:25:13 -0000 --2lcUOdKuHx/sbuIt Content-Type: text/plain; charset=koi8-r Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Mon, Dec 19, 2011 at 11:54:46AM -0800, Xin LI wrote: > Hi, >=20 > On Mon, Dec 19, 2011 at 11:41 AM, Mike Tancsa wrote: > > Are there any security reasons as to why > > > > http://www.freebsd.org/cgi/query-pr.cgi?pr=3D142258 =9A([patch] rtld(1)= : add > > ability to log or print rtld errors) > > > > would not have been committed to the tree ? >=20 > I've added kib@ to Cc list. >=20 > It doesn't seem to me that this proposed change would do something > with security? Personally I think the change is reasonable (but we > may want printf be replaced with _rtld_error in rtld.c and use > LD_UTRACE there?) I also think that UTRACE part is not bad, but will object against the LD_PRINT_ERROR part. FWIW, it should use rtld_printf() instead of printf(), but this is moot point. --2lcUOdKuHx/sbuIt Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.18 (FreeBSD) iEYEARECAAYFAk7vl/8ACgkQC3+MBN1Mb4isYgCbBQXBybwMYLZTabB9zUzSK0w5 sWEAoLKyXt3sw4hLuj6NFBWuNqAg41PM =d15s -----END PGP SIGNATURE----- --2lcUOdKuHx/sbuIt--