Re: Where else?

From: Justin Lundy (jblat_private)
Date: Sat Nov 17 2001 - 08:18:24 PST

  • Next message: dullienat_private: "Re: Where else?"

    Also,
    
    Procedure linkage table (PLT) entries.
    
    -jbl
    
    On Fri, Nov 16, 2001 at 11:07:12PM -0500, Hung Vu wrote:
    > To execute arbitrary code on a system one can overwrite:
    > 	- Return addresses on the stack
    > 	- function pointers
    > 	- Longjump buffers
    > 	- GOT tables
    > 	- Dtors
    > 	- _atexit stuff 
    > 	- GLibc hooks
    > 
    > Where else?
    > 
    > Hung.
    
    -- 
    "Paper money eventually returns to its intrinsic value - zero." -Voltaire       
    HTTP: www.subterrain.net/~jbl/ % GPG key: www.subterrain.net/~jbl/jbl.gpg       
    %% GPG key fingerprint: 7F63 6DF4 B2F8 31F7 5219 8E0B 602F C8C8 D77E FFDF
    



    This archive was generated by hypermail 2b30 : Sun Nov 18 2001 - 09:21:15 PST