Jave broken... WTF is PAX?!?

Michael ODonnell michael.odonnell at comcast.net
Fri Sep 3 15:31:01 EDT 2004


>PaX is apparently an exploit-defense project:
>
> http://pax.grsecurity.net/
> http://pax.grsecurity.net/docs/pax.txt
>
>...and those bytes disassemble to this, FWIW:
>
>>    push   $0x27f
>>    fldcw  0x0(%esp)
>>    pop    %eax
>>    ret

...which might be unmasking a pending FPU exception in such
a way or at such a time that PaX considers it an attempted
'sploit.  Of course, it could also be entirely unrelated!
Note that I just learned how to even spell PaX 2 minutes ago...   ;->

Did you recently migrate to a system (2.4.22-10mdksecure ?)
that's more restrictive, security-wise?
 



More information about the gnhlug-discuss mailing list