build firefox, thunderbird and mozilla with propolice

Discussion about Seamonkey builds
Post Reply
hanb
Posts: 3
Joined: May 14th, 2004, 2:53 pm

build firefox, thunderbird and mozilla with propolice

Post by hanb »

Hi,

I just figured out you can build binaries with a gcc compiler with propolice stack-smashing protector and those binaries work fine on other machines, except that any buffer-overflow exploit is now turned into remote crashes at worst.

Since especially in this phase ff,tb and moz will be searched again and again for exploitable bugs this simple measure can take out the sting of the most often exploited class of bugs. At the acceptable cost of 1% performance loss.


# Han
User avatar
moox
Posts: 923
Joined: February 29th, 2004, 1:07 am
Location: Wish I were in Alaska...

Post by moox »

I, and I am sure others, would appreciate more info on propolice.
hanb
Posts: 3
Joined: May 14th, 2004, 2:53 pm

Post by hanb »

Right.

http://www.research.ibm.com/trl/projects/security/ssp/

But since it's a gcc extension I don't think this is w32 related.
Post Reply