Bugtraq mailing list archives

Sun's Loadmodule Patch


From: neil () legless demon co uk (Neil Woods)
Date: Thu, 19 Oct 1995 00:37:52 +0100


Sun's loadmodule fix replaces the insecure call to system(3) with calls to
vfork(2) and execle(3) (apparently execle(3) is used in order to specify
a null environment).

This is effective measure to fix loadmodule, uname(2) is still the most
elegant fix which has been overlooked.

Cheers,

Neil
--
Let the Mystery Be, So Watcha Want, Longing In Their Hearts, Hate My Way,
M-Bike, Safari, Uncle June and Aunt Kiyoti, Daisy Dead Petals, Tuff Gnarl.

     ...like a badger with an afro throwing sparklers at the Pope...



Current thread: