Vulnerability Development mailing list archives

Re: Where else?


From: "Pavel Kankovsky" <peak () argo troja mff cuni cz>
Date: Sun, 18 Nov 2001 21:45:14 +0100 (MET)

On Fri, 16 Nov 2001, Hung Vu wrote:

To execute arbitrary code on a system one can overwrite:
      - Return addresses on the stack
      - function pointers
      - Longjump buffers
      - GOT tables
      - Dtors
      - _atexit stuff 
      - GLibc hooks

Where else?

One can overwrite the code itself.

--Pavel Kankovsky aka Peak  [ Boycott Microsoft--http://www.vcnet.com/bms ]
"Resistance is futile. Open your source code and prepare for assimilation."


Current thread: