[Dailydave] Dangling pointers exploitation

Thomas Ptacek tqbf at matasano.com
Wed Jul 25 15:03:12 EDT 2007


I'm not sure "saved return address on the stack" is the real vector
for uninitialized variables.

On 7/25/07, pageexec at freemail.hu <pageexec at freemail.hu> wrote:
> On 25 Jul 2007 at 12:02, Thomas Ptacek wrote:
>
> > you have a pointer who's value seems unpredictable but is
> > in fact strongly influenced by the execution environment which is in
> > turn often influenced by inputs and timing.
>
> such as... a saved return address on the stack? isn't that kinda old
> news these days? ;-)
>
>


-- 
---
Thomas H. Ptacek // matasano security
read us on the web: http://www.matasano.com/log


More information about the Dailydave mailing list