Bug#657010: [Pkg-shadow-devel] Bug#657010: [login] 'su' should be PIE

2012-01-24 Thread Alexander Gattin
Hello, On Mon, Jan 23, 2012 at 09:06:38PM +0200, Török Edwin wrote: PIE refers to -fPIE from GCC of course. First, let me thank you for your report, Edwin. Using that flag doesn't completely prevent the exploit though. How unfortunate, Here is a good summary and discussions:

Bug#657010: [Pkg-shadow-devel] Bug#657010: [login] 'su' should be PIE

2012-01-23 Thread Nicolas François
Hello, On Mon, Jan 23, 2012 at 03:06:46PM +0200, edwinto...@gmail.com wrote: See CVE-2012-0056, a non-PIE 'su' binary makes it very easy to exploit. Would you mind giving a bit more information? I unfortunately stick to this PIE definition from wikipedia: baked dish which is usually

Bug#657010: [Pkg-shadow-devel] Bug#657010: [login] 'su' should be PIE

2012-01-23 Thread Török Edwin
On 01/23/2012 08:53 PM, Nicolas François wrote: Hello, On Mon, Jan 23, 2012 at 03:06:46PM +0200, edwinto...@gmail.com wrote: See CVE-2012-0056, a non-PIE 'su' binary makes it very easy to exploit. Would you mind giving a bit more information? I unfortunately stick to this PIE