You are viewing a plain text version of this content. The canonical link for it is here.
Posted to yarn-issues@hadoop.apache.org by "Vinod Kumar Vavilapalli (JIRA)" <ji...@apache.org> on 2017/07/19 21:16:00 UTC
[jira] [Updated] (YARN-6721) container-executor should have stack
checking
[ https://issues.apache.org/jira/browse/YARN-6721?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Vinod Kumar Vavilapalli updated YARN-6721:
------------------------------------------
Target Version/s: 2.7.4, 3.0.0-beta1, 2.8.2 (was: 3.0.0-beta1)
> container-executor should have stack checking
> ---------------------------------------------
>
> Key: YARN-6721
> URL: https://issues.apache.org/jira/browse/YARN-6721
> Project: Hadoop YARN
> Issue Type: Improvement
> Components: nodemanager, security
> Reporter: Allen Wittenauer
> Labels: security
>
> As per https://www.qualys.com/2017/06/19/stack-clash/stack-clash.txt and given that container-executor is setuid, it should be compiled with stack checking if the compiler supports such features. (-fstack-check on gcc, -fsanitize=safe-stack on clang, -xcheck=stkovf on "Oracle Solaris Studio", others as we find them, ...)
--
This message was sent by Atlassian JIRA
(v6.4.14#64029)
---------------------------------------------------------------------
To unsubscribe, e-mail: yarn-issues-unsubscribe@hadoop.apache.org
For additional commands, e-mail: yarn-issues-help@hadoop.apache.org