wtf ... Something strips installed binaries???

Thomas M Steenholdt tmus at tmus.dk
Tue Sep 2 13:07:45 UTC 2008


Bill Crawford wrote:
> Thomas M Steenholdt wrote:
>> I wasn't even aware that prelinking actually changed the files. Isn't this kind of dangerous from a system-integrity point-of-view. How can we ever validate binaries if they are modified on purpose?
> 
> With "prelink --verify" ?
> 

I can't see how that would actually verify that the binary has not been 
modified by a rootkit or whatever? rpm -V should be able to detect this, 
on the other hand, but how it works in conjunction with prelinking I 
don't know...

/Thomas




More information about the fedora-devel-list mailing list