standard error handling for malloc() broken for user root and group wheel

Dag-ErlingSmørgrav des at des.no
Wed Feb 18 07:45:04 PST 2004


"Poul-Henning Kamp" <phk at phk.freebsd.dk> writes:
> In fact, given the almost universal absense of third-party binary
> software, and the hostility and sofistication of current attacks
> on security, I am almost convinced that the correct thing to do is
> to discontinue 'a' entirely and make 'A' mandatory for all programs.

I agree.  A core dump is far more useful than whatever cryptic error
message and memory corruption one may get without 'A'.

DES
-- 
Dag-Erling Smørgrav - des at des.no


More information about the freebsd-current mailing list