Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

Re: Anyone looked at the canary stack protection in Win2k3?

From: Mark Feldman <mkfeldman(at)myway.com>
Date: Wed Aug 06 2003 - 06:05:18 EDT
('binary' encoding is not supported, stored as-is)
In-Reply-To: <000101c34eaa$ecf34a80$0101a8c0@gfserver>

Hi thomas
There is no need for a tool like IDA pro when you've got source code available under your Visual C++ 7.0 CRT\SRC directory. The security check is enabled by adding the /GS option to the compiler's command line.

These two links will explain microsoft's stack smashing protection:

http://std.dkuug.dk/JTC1/SC22/WG21/docs/papers/2003/n1462.pdf

http://msdn.microsoft.com/library/default.asp?url=/library/enus /dv_vstechart/html/vctchCompilerSecurityChecksInDepth.asp

Regards,
Mark Feldman <mkfeldman@myway.com>

>From: "Andrew Thomas" <andrew@generator.co.za>
>To: <vuln-dev@lists.securityfocus.com>
>Subject: Anyone looked at the canary stack protection in Win2k3?
>Date: Sun, 20 Jul 2003 12:37:03 +0200
>
>I've looked a bit at a single disassembly that I got
Received on Wed Aug 6 12:39:28 2003

This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:07:40 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library