Full Disclosure mailing list archives

Re: exploitation ideas under memory pressure


From: Tavis Ormandy <taviso () cmpxchg8b com>
Date: Sun, 2 Jun 2013 22:52:09 -0700

On Mon, May 20, 2013 at 02:35:54PM -0700, Tavis Ormandy wrote:
I'm quite proud of this list cycle trick, here's how to turn it into an
arbitrary write.


There's a public solution now, here's my version. Thanks to progrmboy
for an exploitation idea he came up with that hadn't occurred to me.

Tavis.

Attachment: ComplexPath.c
Description:

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Current thread: