TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Out-of-bounds write in systemd-resolved with crafted TCP payload

66 点作者 frign将近 8 年前

6 条评论

saulrh将近 8 年前
I misparsed this as "A bug regarding an OOB write in systemd has been resolved by deployment of a crafted TCP payload" and was hoping for a legendary tale of deeply grey-hat infrastructure hack-patching.
stepik777将近 8 年前
Remind me, why are such critical system components as systemd are still being written in a memory unsafe language?
评论 #14691202 未加载
评论 #14691426 未加载
评论 #14692014 未加载
评论 #14691545 未加载
评论 #14693641 未加载
评论 #14691654 未加载
评论 #14691479 未加载
detaro将近 8 年前
previously: <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=14652787" rel="nofollow">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=14652787</a> (5 days ago, 192 points, 237 comments)
dogecoinbase将近 8 年前
Sorry, but this is not a standard TCP payload. I think the bug is in the library that made the packet, not with systemd. They should fix their library.
评论 #14691250 未加载
评论 #14691263 未加载
评论 #14691669 未加载
tyingq将近 8 年前
<i>&quot;A patch to resolve this has been provided...&quot;</i><p>The patch resolves the resolver. Heh.
yuhong将近 8 年前
OT, but I wonder why Poettering chose Kay Sievers to work on systemd in the first place.
评论 #14696957 未加载