Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 8 Jul 2005 08:34:00 -0700 (PDT)
From:      "ALeine" <aleine@austrosearch.net>
To:        root@Neo-Vortex.net
Cc:        freebsd-hackers@freebsd.org, jeremie@le-hen.org
Subject:   Re: ProPolice: best way to fill canary  
Message-ID:  <200507081534.j68FY0om062318@marlena.vvi.at>

next in thread | raw e-mail | index | archive | help
root@Neo-Vortex.net wrote: 

> I was meaning random length fixed value...

That may be what you meant, but that's definitely not what you said.

> and unless the attacker wants to set the return address to 0x0...

You may want to read the paper "Four different tricks to bypass StackShield
and StackGuard protection" before making more comments.

http://www.coresecurity.com/files/files/11/StackguardPaper.pdf

ALeine
___________________________________________________________________
WebMail FREE http://mail.austrosearch.net 



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200507081534.j68FY0om062318>