oss-sec mailing list archives

Re: Offset2lib: bypassing full ASLR on 64bit Linux


From: Pavel Labushev <pavel.labushev () runbox no>
Date: Sat, 6 Dec 2014 07:55:54 +0700

On Fri, 5 Dec 2014 14:15:03 -0800
Reed Loden <reed () reedloden com> wrote:

For the record, Mozilla tried it several months ago and had to back it out.

"Nautilus (the file manager) can't open PIE executables, which makes
distributing PIE executable essentially impossible."

Like it's essentially impossible to invoke the target ET_DYN binary via
a shell script or an ET_EXEC executable wrapper.

Attachment: _bin
Description:


Current thread: