OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: [Dailydave] Dangling pointers exploitation

From: Tyler Krpata (krpatasecgmail.com)
Date: Wed Jul 25 2007 - 17:11:03 CDT


Keeping in mind that "uninitialized" and "previously valid" have some
important differences.

On 7/25/07, Thomas Ptacek <tqbfmatasano.com> wrote:
> I'm not sure "saved return address on the stack" is the real vector
> for uninitialized variables.
>
> On 7/25/07, pageexecfreemail.hu <pageexecfreemail.hu> wrote:
> > On 25 Jul 2007 at 12:02, Thomas Ptacek wrote:
> >
> > > you have a pointer who's value seems unpredictable but is
> > > in fact strongly influenced by the execution environment which is in
> > > turn often influenced by inputs and timing.
> >
> > such as... a saved return address on the stack? isn't that kinda old
> > news these days? ;-)
> >
> >
>
>
> --
> ---
> Thomas H. Ptacek // matasano security
> read us on the web: http://www.matasano.com/log
> _______________________________________________
> Dailydave mailing list
> Dailydavelists.immunitysec.com
> http://lists.immunitysec.com/mailman/listinfo/dailydave
>
_______________________________________________
Dailydave mailing list
Dailydavelists.immunitysec.com
http://lists.immunitysec.com/mailman/listinfo/dailydave