[gentoo-hardened] Gnash and aslr-fix

2012-02-25 Thread Christian Apeltauer
Hello hardened-list, I was playing with gnash-0.8.10 for displaying downloaded swf files. But I ran in an endless mmap/munmap loop. Of course I remembered bug #396275 and found the culprit in libbase/jemalloc.c. The code wasn't exactly the same as expected by firefox's ff9-aslr-fix.patch, but I w

Re: [gentoo-hardened] Gnash and aslr-fix

2012-02-25 Thread PaX Team
On 25 Feb 2012 at 10:09, Christian Apeltauer wrote: hi, > The code wasn't exactly the same as expected by firefox's > ff9-aslr-fix.patch, but I was able to port it to gnash. gnash works > now. Nonetheless I would like to have my patch to be reviewed by > someone who has a better understanding of

Re: [gentoo-hardened] SELinux userland utilities update

2012-02-25 Thread Sven Vermeulen
On Fri, Feb 24, 2012 at 04:58:00PM -0500, Alain Toussaint wrote: > I'm running MCS on my server but it is still in permissive mode because I > need to iron out a few things and haven't had the time but I'm preparing > another server this week-end so I can try a new MCS install and report back > pro

Re: [gentoo-hardened] hardened-sources-3.2.6 problems

2012-02-25 Thread Anthony G. Basile
On 02/24/2012 07:36 AM, PaX Team wrote: On 24 Feb 2012 at 10:32, "Tóth Attila" wrote: Even after change to another user (mail or dovecot). It seems the kernel incorrectly recognized the change of the UID. wasn't that already fixed with: commit 4fd554e3a097b22c5049fcdc423897477deff5ef Author:

Re: [gentoo-hardened] hardened-sources-3.2.6 problems

2012-02-25 Thread PaX Team
On 25 Feb 2012 at 14:40, Anthony G. Basile wrote: > @pipacs, I've had reports of 3.2.2-r1 kernels having problems booting. > idl0r gave me a bzImage which will not boot in qemu. Using the same > kernel config, 3.2.7 *will* boot. The problem occurs shortly after > decompression but before any