Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

Re: exploiting a binary if %edi can be overwritten?

From: <Valdis.Kletnieks(at)vt.edu>
Date: Mon Jun 23 2003 - 14:33:40 EDT

On Mon, 23 Jun 2003 10:06:05 +0200, avel@gmx.ch said:
> hi community,

Although the context here is implied to be Linux on an x86 CPU, it's good to remember that there are other Unixoids that run on an x86 (the *BSD and Solaris/X86, right off the top of my head) which may have different linkage conventions, and that Linux runs on other processors that don't have a %edi register...

I've even seen one exploit that failed to work on a test box - because the exploit used a 686-only opcode to work around something (a no-NULLs requirement or similar), and the testbed was a 486... ;)

So a quick reminder - mention your system and processor, just to be sure.

For all Unixoid boxes, 'uname -a' should be specific enough:

% uname -a
Linux turing-police.cc.vt.edu 2.5.72-mm3-lsm1 #3 Sun Jun 22 13:10:38 EDT 2003 i686 i686 i386 GNU/Linux

Do you need help?X

(Yes, I'm a maniac.. and yes, I know .73 is out :)

  • application/pgp-signature attachment: stored
Received on Tue Jun 24 18:36:56 2003

This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:07:40 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library