From mboxrd@z Thu Jan  1 00:00:00 1970
Received: from pigeon.gentoo.org ([208.92.234.80] helo=lists.gentoo.org)
	by finch.gentoo.org with esmtp (Exim 4.60)
	(envelope-from <gentoo-dev+bounces-49574-garchives=archives.gentoo.org@lists.gentoo.org>)
	id 1Rqr5S-0000hX-Ad
	for garchives@archives.gentoo.org; Fri, 27 Jan 2012 19:03:50 +0000
Received: from pigeon.gentoo.org (localhost [127.0.0.1])
	by pigeon.gentoo.org (Postfix) with SMTP id 9A3ECE0648;
	Fri, 27 Jan 2012 19:03:40 +0000 (UTC)
Received: from homiemail-a3.g.dreamhost.com (caiajhbdcaib.dreamhost.com [208.97.132.81])
	by pigeon.gentoo.org (Postfix) with ESMTP id 0E05AE07D6
	for <gentoo-dev@lists.gentoo.org>; Fri, 27 Jan 2012 19:02:40 +0000 (UTC)
Received: from homiemail-a3.g.dreamhost.com (localhost [127.0.0.1])
	by homiemail-a3.g.dreamhost.com (Postfix) with ESMTP id 8858D284076
	for <gentoo-dev@lists.gentoo.org>; Fri, 27 Jan 2012 11:02:34 -0800 (PST)
DomainKey-Signature: a=rsa-sha1; c=nofws; d=zx2c4.com; h=mime-version
	:in-reply-to:references:date:message-id:subject:from:to:
	content-type; q=dns; s=zx2c4.com; b=E89MxdD8t9/jDbmLV4f60M/gLozZ
	Rgdks7M1W1BqrFxSrenZ4vzGNz6sTiUV5FO8P3XDWxGH+oWN3d23zgIBCqCyyWVw
	0DFC0Nog+hxCORs0joDzKcHE5doAvNXvi41QUBGWzPxbIIkaMIxZB9E5wJ7U1Tq4
	96F8eHpuE99eEBA=
DKIM-Signature: v=1; a=rsa-sha1; c=relaxed; d=zx2c4.com; h=mime-version
	:in-reply-to:references:date:message-id:subject:from:to:
	content-type; s=zx2c4.com; bh=ClHrBSS5iFRrR15cMo/Ayq3Qx0w=; b=BY
	fwbLEXM/9UFgpfTYQMGE/QWWNDV2l2YnDqruJFsnqBkMuMjQHWz7i5/fJE6XSnzA
	g0dOTOPww+Z/FF7PYjdNtR1jEReIqX/xOU8PdXmLiVguA9yviua/DT6pRQLVn1D9
	w7nlcgWPGYyeOVQgtUHcKCezzYfiFsZkSmV2fG7N0=
Received: from mail-qy0-f181.google.com (mail-qy0-f181.google.com [209.85.216.181])
	(using TLSv1 with cipher RC4-SHA (128/128 bits))
	(No client certificate requested)
	(Authenticated sender: jason@zx2c4.com)
	by homiemail-a3.g.dreamhost.com (Postfix) with ESMTPSA id 49DE8284078
	for <gentoo-dev@lists.gentoo.org>; Fri, 27 Jan 2012 11:02:34 -0800 (PST)
Received: by qcpx40 with SMTP id x40so1336697qcp.40
        for <gentoo-dev@lists.gentoo.org>; Fri, 27 Jan 2012 11:02:33 -0800 (PST)
Precedence: bulk
List-Post: <mailto:gentoo-dev@lists.gentoo.org>
List-Help: <mailto:gentoo-dev+help@lists.gentoo.org>
List-Unsubscribe: <mailto:gentoo-dev+unsubscribe@lists.gentoo.org>
List-Subscribe: <mailto:gentoo-dev+subscribe@lists.gentoo.org>
List-Id: Gentoo Linux mail <gentoo-dev.gentoo.org>
X-BeenThere: gentoo-dev@lists.gentoo.org
Reply-to: gentoo-dev@lists.gentoo.org
MIME-Version: 1.0
Received: by 10.224.186.209 with SMTP id ct17mr10322653qab.55.1327690953637;
 Fri, 27 Jan 2012 11:02:33 -0800 (PST)
Received: by 10.229.89.205 with HTTP; Fri, 27 Jan 2012 11:02:33 -0800 (PST)
In-Reply-To: <CAHmME9pyQ7nf+5m==0zvp1R4H7F5UcT-98A5B7C3Cr18Hv789A@mail.gmail.com>
References: <CAHmME9oDzehZRbOM90u4viQa+xQuHQGyZfcvtqY-8JEWfDSUdA@mail.gmail.com>
	<201201240058.50060.vapier@gentoo.org>
	<CAHmME9pyQ7nf+5m==0zvp1R4H7F5UcT-98A5B7C3Cr18Hv789A@mail.gmail.com>
Date: Fri, 27 Jan 2012 20:02:33 +0100
Message-ID: <CAHmME9r_6XpoH69xfrXh4Kxy1GESvaOs3PSF=_csfP585-2NDg@mail.gmail.com>
Subject: Re: [gentoo-dev] Can we get PIE on all SUID binaries by default, por favor?
From: "Jason A. Donenfeld" <Jason@zx2c4.com>
To: gentoo-dev@lists.gentoo.org
Content-Type: multipart/alternative; boundary=20cf30334973a9bf2804b78723e2
X-Archives-Salt: a6678491-f716-4949-bfbd-8eeda1649d4a
X-Archives-Hash: c2fd2c2dba8d66533eb5b57ab30fe93e

--20cf30334973a9bf2804b78723e2
Content-Type: text/plain; charset=ISO-8859-1

I've just been informed that RHEL does not allow non-PIE executables. We
really should follow suit here.

--20cf30334973a9bf2804b78723e2
Content-Type: text/html; charset=ISO-8859-1
Content-Transfer-Encoding: quoted-printable

I&#39;ve just been informed that RHEL does not allow non-PIE=A0executables.=
 We really should follow suit here.

--20cf30334973a9bf2804b78723e2--