|
Vulnerability Development
mailing list archives
Re: Where else?
From: "Pavel Kankovsky" <peak () argo troja mff cuni cz>
Date: Sun, 18 Nov 2001 21:45:14 +0100 (MET)
On Fri, 16 Nov 2001, Hung Vu wrote:
To execute arbitrary code on a system one can overwrite:
- Return addresses on the stack
- function pointers
- Longjump buffers
- GOT tables
- Dtors
- _atexit stuff
- GLibc hooks
Where else?
One can overwrite the code itself.
--Pavel Kankovsky aka Peak [ Boycott Microsoft--http://www.vcnet.com/bms ]
"Resistance is futile. Open your source code and prepare for assimilation."
By Date
By Thread
Current thread:
|