[rescue] A perverse thought (SGI security division)

Francisco Javier Mesa-Martinez lefa at ucsc.edu
Mon Mar 15 15:22:58 CST 2004


On Mon, 15 Mar 2004, Janet L. Campbell wrote:

>
> On Fri, 12 Mar 2004, Francisco Javier Mesa-Martinez wrote:
>
> > I believe that the openBSD people went a step further and made the stack
> > non executable, openBSD is still rather annoying in some things but maybe
>
> The SPARC V9 ABI mandates a nonexecutable stack.  Solaris with the
> noexec_user_stack variable set will also mark stack space as nonexecutable
> for 32-bit apps.  This breaks the V8 ABI slightly, but it only really
> messes up trampolines and some LISPy stuff.
>
> Note that this does nothing for an exploit in heap space.

Yah, I was refering to the stack in the openBSD x86 port, which makes for
very interesting side effects in an architecture like the x86.



More information about the rescue mailing list