Bugtraq mailing list archives
Re[2]: Can't Preventing exploitation with rebasing
From: dullien () gmx de
Date: Thu, 6 Feb 2003 20:14:03 +0100
Hey all, bghn> DIGRESSION: bghn> Dave Litchfield says you can call esp. I don't know Dave's bghn> relationships with his registers but this doesn't work if I want bghn> to get my eip on top of my shellcode. Always starts executing a bghn> memory address for me. Maybe if I took esp out to dinner more bghn> often then I could call it instead of having to jump on top of it. bghn> Dave, any suggestions for the wine list? bghn> END DIGRESSION. Problem here is Intel ignoring it's own standards. The standard says to first transfer control, then push the old EIP on the stack -- but Intel CPU's since Pentium have done it the other way around, first pushing EIP (and decreasing ESP), then setting EIP=ESP. Cheers, Thomas
Current thread:
- Re: Preventing exploitation with rebasing, (continued)
- Re: Preventing exploitation with rebasing dullien (Feb 05)
- Re: Preventing exploitation with rebasing David Litchfield (Feb 04)
- Re[2]: Preventing exploitation with rebasing dullien (Feb 04)
- RE: Preventing exploitation with rebasing Jason Coombs (Feb 04)
- Re: Preventing exploitation with rebasing dullien (Feb 05)
- Re: Preventing exploitation with rebasing Charlie Root (Feb 05)
- Re: Preventing exploitation with rebasing David Litchfield (Feb 05)
- Re: [VulnDiscuss] Re: Preventing exploitation with rebasing Halvar Flake (Feb 05)
- Re: Preventing exploitation with rebasing Brian Hatch (Feb 05)
- Re: Preventing exploitation with rebasing Alan DeKok (Feb 05)
- Re: Can't Preventing exploitation with rebasing bugtraq (Feb 05)
- Re[2]: Can't Preventing exploitation with rebasing dullien (Feb 05)
- Observation on randomization/rebiasing... Nicholas Weaver (Feb 05)
- RE: Observation on randomization/rebiasing... Jason Coombs (Feb 05)
- Re: Preventing exploitation with rebasing Crispin Cowan (Feb 05)
- Re: Preventing exploitation with rebasing David S Goldberg (Feb 05)
- Re: Preventing exploitation with rebasing Alun Jones (Feb 05)
- Re: Preventing exploitation with rebasing Deus, Attonbitus (Feb 06)
- Re: Preventing exploitation with rebasing Bugtraq User (Feb 05)