Re: Using sgid binaries to defend against LD_PRELOAD/ptrace()


Aaron M. Ucko:
> I would counter-propose introducing some sort of ELF tag that ld could
> set and the kernel and ld.so could check; while this would be more
> involved, it would be less hackish and would avoid introducing new
> potential vulnerabilities.

That would be ideal, of course. Does ELF support anything like that?



