Re: Using sgid binaries to defend against LD_PRELOAD/ptrace()
Aaron M. Ucko:
> I would counter-propose introducing some sort of ELF tag that ld could
> set and the kernel and ld.so could check; while this would be more
> involved, it would be less hackish and would avoid introducing new
> potential vulnerabilities.
That would be ideal, of course. Does ELF support anything like that?
P.S. Please honour m-f-t, thanks.
Martin Pitt http://www.piware.de
Ubuntu Developer http://www.ubuntu.com
Debian Developer http://www.debian.org