[Dnsmasq-discuss] don't empty cache

Matthias Andree matthias.andree at gmx.de
Tue Jun 23 17:23:09 BST 2009


Am 23.06.2009, 18:11 Uhr, schrieb richardvoigt at gmail.com  
<richardvoigt at gmail.com>:

> A buffer overflow in a kernel module processing incoming network data is  
> a different story of course, but this is a very slim attack surface,
> especially on a well-configured firewall (e.g. no khttpd, knfsd, etc).

If the kernel itself is the firewall, that's where the problem is.

It's however pointless and off-topic to discuss this here, so let's not  
continue to hijack the list -- the frequency of kernel updates isn't an  
issue for the OP. Brad's practice however is misguided in itself and also  
with besides the point that the original poster was making, and that  
deserves a comment.

-- 
Matthias Andree



More information about the Dnsmasq-discuss mailing list