Comment 8 for bug 424597

Revision history for this message
Kees Cook (kees) wrote :

As an attacker, I can gain control of the process through shell commands or through stack overflows, so if shell command access is "by design", stack overflows are no worse (from a security perspective). This is absolutely a bug, since the process will crash due to the stack protector checks, but I don't see how it's a security issue.