|
|
|
Date Submitted:
06/30/06
Hits: 92 Rating: ![]() ![]() ![]() ![]() based on 0 votes
Smashing the Kernel Stack for Fun and ProfitAdded by Papergrl
Description:
This article is about recent exposures of many kernel level vulnerabilities and advances in their exploitation which leads to trusted (oops safe) and robust exploits. We will focus on 2 recent vulnerabilities in the OpenBSD kernel as our case studies. Out of the these we will mainly concentrate on exploitation of the select() system call buffer overflow. The setitimer() arbitrary memory overwrite vulnerability will be explained in the code section of this article (as inline comments, so as not to repeat what we have already covered whilst exploring the select() buffer overflow).
Read the Complete Paper You don't have permission to post replies. Please login or register. |
