[Pidgin] #15209: Pidgin for Windows (2.10.6) - Missing DEP and ASLR
Pidgin
trac at pidgin.im
Wed Jul 11 17:53:05 EDT 2012
#15209: Pidgin for Windows (2.10.6) - Missing DEP and ASLR
----------------------+-----------------------------------------------------
Reporter: noloader | Owner: rekkanoryo
Type: defect | Status: new
Milestone: | Component: unclassified
Version: 2.10.6 | Resolution:
Keywords: |
----------------------+-----------------------------------------------------
Comment(by noloader):
Replying to [ticket:15209 noloader]:
> Running BinScope on the latest Pidgin for Windows shows pidgin.exe is
missing some platform security features, such as DEP and ASLR.
>
If the project needs an audit tool for Linux, I suggest Tobias Klein's
[http://www.trapkit.de/tools/checksec.html CheckSec].
[http://www.trapkit.de/tools/checksec.html CheckSec] has a few minor
shortcomings, but it will do until the [http://sourceware.org/binutils/
BinUtil] folks give us a tool like auditelf (in the spirit of readelf,
etc). For example, CheckSec will report an executable has a no-exec stack
based on the presence of the GNU_PT_STACK header marking; where it should
report based on GNU_PT_STACK *and* a 0 size.
--
Ticket URL: <http://developer.pidgin.im/ticket/15209#comment:2>
Pidgin <http://pidgin.im>
Pidgin
More information about the Tracker
mailing list