Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Probably only with severely niche libc. Is there any libc that allocates data with granularity smaller than 16 bytes?


Very doubtful there is one. Seems like a total nothing burger


Sudo is a security boundary, it has to be rock solid and an issue that doesn’t immediately look exploitable is still a big deal. Sudo runs under the control of the attacker, it’s playing with fire!


Case in point: the whole speculative execution was only suspected to maybe be exploitable decades ago, and only now we have a bunch of PoCs


...which are still only useful under highly contrived conditions which require knowing so much about the target that it wouldn't be a practical concern.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: