OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: [Dailydave] Dangling pointers exploitation

From: Thomas Ptacek (tqbfmatasano.com)
Date: Wed Jul 25 2007 - 14:03:12 CDT


I'm not sure "saved return address on the stack" is the real vector
for uninitialized variables.

On 7/25/07, pageexecfreemail.hu <pageexecfreemail.hu> wrote:
> On 25 Jul 2007 at 12:02, Thomas Ptacek wrote:
>
> > you have a pointer who's value seems unpredictable but is
> > in fact strongly influenced by the execution environment which is in
> > turn often influenced by inputs and timing.
>
> such as... a saved return address on the stack? isn't that kinda old
> news these days? ;-)
>
>

--
---
Thomas H. Ptacek // matasano security
read us on the web: http://www.matasano.com/log
_______________________________________________
Dailydave mailing list
Dailydavelists.immunitysec.com
http://lists.immunitysec.com/mailman/listinfo/dailydave