Re: [stable] Linux 2.6.25.10

From: Tiago Assumpcao
Date: Wed Jul 16 2008 - 00:16:18 EST


Casey Schaufler wrote:
Ted Tso, Stephen Smalley and I are all recognized as security experts
and we can't even agree on whether sockets are objects or not, much
less what constitutes a security bug and even less what is likely to
be a security bug. Goodness, there are some of us who would argue
that since DNS is itself a security bug it is just not possible for
DNS to have a security bug, as an example.

In most cases, they are easy to spot.

Err, no, in the kernel environment a real security flaw is likely to
be pretty subtle.

You do not hesitate in categorizing yourself as something as obscure as... what's that term again? "Expert". But then you fail on basic pragmatism when attempting to define what, nearly always, is a true or false question?

Jeez ;)

--t
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/