Linking static applications with Statifier and Ermine
The current workaround is to temporarily disable ASLR. To do so, become a root-equivalent user, write a 0 to the virtual file in question, then output the file to see that the settings are okay:
# echo 0 > /proc/sys/kernel/randomize_va_space # cat /proc/sys/kernel/randomize_va_space 0
Now create the program again with Statifier. Unfortunately, you also need to disable ASLR on any systems on which you want to work with the statically linked version. I will leave it up to you to decide whether this compensates for the vulnerability it creates.
Statifier and the light version of Ermine will only link in dynamic libraries (Statifier will not do this for the critical NSS (Name Service Switch) and Gconv (character set conversion) libraries). However, games in particular typically include material such as images or audio files, whereas application programs tend to offload translations into numerous .mo files. All of these files need to be moved to the new computer. Ermine Pro is the only program to include platform-independent files in the statically linked program. On top of this, the most expensive program in the field can combine multiple programs to create a single statically linked binary.
Because of its many bugs, Statifier is recommended only for smaller command-line tools. Unfortunately, the alternative, Ermine, costs money – how much exactly is open to negotiation with the vendor.
Private users are probably better off putting together a complete Live system. Fedora, Ubuntu, and other distributions include tools to help you build your own system; many rescue disks and other Live systems are also available on the Internet.
New tool will look like GParted but support a wider range of storage technologies.
New public key pinning feature will help prevent man-in-the-middle attacks.
Carnegie Mellon researchers say 3 million pages could fall down the phishing hole in the next year.
The US government rolls new best-practice rules for protecting SSH.
Klaus Knopper announces the latest version of his iconic Live Linux system.
All websites that use these popular CMS tools could be vulnerable to denial of service attacks if users don't install the updates.
According to a report, many potential victims of the Heartbleed attack have patched their systems, but few have cleaned up the crime scene to protect themselves from the effects of a previous intrusion.
DARPA and NICTA release the code for the ultra-secure microkernel system used in aerial drones.
Should you trust an online service to store your online passwords?
New B+ board lets you build cool things without the complication of a powered USB hub.