OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Chris March (Chris.MarchGALEGROUP.COM)
Date: Wed Apr 04 2001 - 12:53:30 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    Hi,

    You may want to check out the Sun "Blueprint" for more information.

    http://www.sun.com/software/solutions/blueprints/0100/security.pdf

    Regards,

    Chris

    -----Original Message-----
    From: Thomas Vincent [mailto:thomasvAPPLE.COM]
    Sent: Tuesday, April 03, 2001 5:55 PM
    To: FOCUS-SUNSECURITYFOCUS.COM
    Subject: Overflow prevention in /etc/system

    A couple of our people think the following lines in /etc/system will
    prevent the overflow that came out in the most recent cert advisory on
    snmp and Solaris.
    Anyone care to comment?

    * Attempt to prevent and log stack-smashing attacks
    set noexec_user_stack=1
    set noexec_user_stack_log=1

    Cheers,
    Thomas Vincent