Exec Shield Overflow Protection

Ingo Molnar has announced a new kernel-based security feature for Linux/x86 called “Exec Shield”. He describes the patch, which is against the 2.4.20-rc1 kernel, as, “The exec-shield feature provides protection against stack, buffer or function pointer overflows, and against other types of exploits that rely on overwriting data structures and/or putting code into those structures. The patch also makes it harder to pass in and execute the so-called ‘shell-code’ of exploits. The patch works transparently, ie. no application recompilation is necessary.”

37 Comments

  1. 2003-05-03 3:50 pm
  2. 2003-05-03 3:54 pm
  3. 2003-05-03 4:23 pm
  4. 2003-05-03 4:37 pm
  5. 2003-05-03 4:39 pm
  6. 2003-05-03 5:08 pm
  7. 2003-05-03 5:26 pm
  8. 2003-05-03 5:28 pm
  9. 2003-05-03 5:30 pm
  10. 2003-05-03 5:47 pm
  11. 2003-05-03 6:27 pm
  12. 2003-05-03 7:15 pm
  13. 2003-05-03 8:22 pm
  14. 2003-05-03 8:54 pm
  15. 2003-05-03 9:01 pm
  16. 2003-05-03 9:17 pm
  17. 2003-05-03 9:22 pm
  18. 2003-05-03 9:25 pm
  19. 2003-05-03 9:42 pm
  20. 2003-05-03 10:06 pm
  21. 2003-05-03 10:08 pm
  22. 2003-05-03 10:37 pm
  23. 2003-05-04 12:14 am
  24. 2003-05-04 1:15 am
  25. 2003-05-04 1:42 am
  26. 2003-05-04 2:00 am
  27. 2003-05-04 2:32 am
  28. 2003-05-04 2:37 am
  29. 2003-05-04 3:04 am
  30. 2003-05-04 3:46 am
  31. 2003-05-04 5:35 am
  32. 2003-05-04 7:41 am
  33. 2003-05-04 3:17 pm
  34. 2003-05-04 6:29 pm
  35. 2003-05-05 3:58 am
  36. 2003-05-05 6:44 am
  37. 2003-05-05 11:43 am