Subject: Re: boundary checks on system call
To: Matt Thomas <matt@3am-software.com>
From: Jaromir Dolecek <jdolecek@netbsd.org>
List: tech-kern
Date: 11/10/2002 21:49:45
Matt Thomas wrote:
> At 12:45 PM 11/10/2002, Jaromir Dolecek wrote:
> >Note the 'code' as passed to systrace_enter() is already masked,
> >and thus guaranteed to be lower than nsysent for given emulation.
> >Yes, i've been looking on the problem reported on openbsd-bugs;
> >we are not vulnerable.
>
> Is that true? And does it matter?
Try the program; we don't panic, it returns 'Bad system call'
both when running standalone and when run under 'systrace -A'.
Does it matter? Since systrace isn't part of release yet,
probably not.
Jaromir
--
Jaromir Dolecek <jdolecek@NetBSD.org> http://www.NetBSD.org/
-=- We should be mindful of the potential goal, but as the tantric -=-
-=- Buddhist masters say, ``You may notice during meditation that you -=-
-=- sometimes levitate or glow. Do not let this distract you.'' -=-