Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




dailydave logo Dailydave mailing list archives

Re: [oss-security] Re: [oss-security] Linux 2.6.30+/SELinux/RHEL5 test kernel 0day, exploiting the unexploitable
From: yersinia <yersinia.spiros () gmail com>
Date: Wed, 22 Jul 2009 18:30:39 +0200

On Wed, Jul 22, 2009 at 5:04 PM, Todd Sabin<tsabin () optonline net> wrote:
spender () grsecurity net (Brad Spengler) writes:

(Really there should have been a CVE for the lack of
-fno-delete-null-pointer-checks instead of pretending the only problem
was /dev/net/tun....

Just as a side note, it seems like gcc is missing an option, to me.
Okay, it can figure out that some NULL pointer checks seem to be
useless, and either optimize them away or leave them in.  What about
issuing a warning?

Where's -Wuseless-null-pointer-check?


Coverity opinion on this specific issue

http://blog.coverity.com/posts/general/would-you-like-to-know-about-0day-defects-months-in-advance

Regards


Todd

--
Todd Sabin                                          <tsabin () optonline net>

_______________________________________________
Dailydave mailing list
Dailydave () lists immunitysec com
http://lists.immunitysec.com/mailman/listinfo/dailydave

  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]