Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date: Fri, 12 Aug 2011 15:05:04 +0400
From: Vasiliy Kulikov <segoon@...nwall.com>
To: kernel-hardening@...ts.openwall.com
Subject: Re: [RFC] x86, mm: start mmap allocation for
 libs from low addresses

On Fri, Aug 12, 2011 at 14:58 +0400, Solar Designer wrote:
> On Fri, Aug 12, 2011 at 02:29:54PM +0400, Vasiliy Kulikov wrote:
> > As a
> > result, it makes it impossible to change the return address on the stack
> > to the address of some library function (e.g. system(3)).
> 
> JFYI, this statement is too strong.
[...]

You're right.  I was thinking about a single overflow for ret2lib with
1+ argument(s).  In general, my statement is wrong, sure.

Thank you!

-- 
Vasiliy

Powered by blists - more mailing lists

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.