On Fri, 09 Dec 2005 18:29:22 +0100
"Spider (D.m.D. Lj.)" <[EMAIL PROTECTED]> wrote:

> On Fri, 2005-12-09 at 18:21 +0100, Jesús García Crespo wrote:
> > Hi! I thought that GCC could means a risk if all of the users of my
> > system are able to run it! I talked this with a friend and he
> > propossed to create a new group, "compiler", for example, where all
> > the users who will be able to run gcc must belong to it!
> > 
> > Wouldn't be interesting to implement this into Gentoo gcc ebuild as
> > an USE?
> 
> 
> Exactly what risk is there from an end-user running a compiler?   A
> compiler doesn't access any kind of restricted environment, doesn't
> auytomatically create binaries with other rights than its own and is
> about as "safe" a product as there can be.

I meant something like:
for (;;) malloc(1000);

> If you're really paranoid about execution and so on, start reading the
> SELinux FAQ and create a ruleset.. The default one is probably more
> lenient than you want it ;)

Yes, I understand. I will read about it.

Thanks a lot!


-- 
Jesús García Crespo (aka Sevein)
http://www.sevein.com
[EMAIL PROTECTED]

GnuPG key ID: E2DB17E8 (pgp.escomposlinux.org)

Attachment: signature.asc
Description: PGP signature

Reply via email to