At 3:12 PM -0400 5/1/08, Leichter, Jerry wrote:
> The VAX VMM effort died with the announcement of the Alpha, in late 1992
> - though obviously the death was decided internally once the move to
> Alpha was decided, which would have been somewhat earlier. The origins
> of the VAX VMM effort date b
| Ken, a good example. For those of you who want to reach much further
| back, Paul Karger told me of a similar problem in the compiler (I don't
| remember the language) used for compiling the A1 VAX VMM kernel, that
| optimized out a check in the Mandatory Access Control enforcement, which
| sepa
At 1:00 PM -0400 5/1/08, Epstein, Jeremy wrote:
> Ken, a good example. For those of you who want to reach much further
> back, Paul Karger told me of a similar problem in the compiler (I don't
> remember the language)
VAX Pascal, before VMS was on Alpha (and long before Itanium).
> used for com
[EMAIL PROTECTED]
> [mailto:[EMAIL PROTECTED] On Behalf Of Kenneth Van Wyk
> Sent: Thursday, May 01, 2008 9:14 AM
> To: Secure Coding
> Subject: [SC-L] GCC and pointer overflows [LWN.net]
>
> FYI, here's an interesting article (and follow-on
> discussions) about a recent bug
> The bug, which has been documented in a CERT advisory, affects C code
> in which, under some circumstances, buffer bounds checking can be
> optimized out to produce binaries that are susceptible to buffer
> overflows. [...]
> Of course, many/most SC-Lers will no doubt jump on this as another
>
Ken,
Comment below.
> FYI, here's an interesting article (and follow-on discussions) about a
> recent bug in the GCC compiler collection.
>
> http://lwn.net/Articles/278137/
>
> The bug, which has been documented in a CERT advisory, affects C code
> in which, under some circumstances, buffer bou
FYI, here's an interesting article (and follow-on discussions) about a
recent bug in the GCC compiler collection.
http://lwn.net/Articles/278137/
The bug, which has been documented in a CERT advisory, affects C code
in which, under some circumstances, buffer bounds checking can be
optimize