Re: Unexecutable Stack / Buffer Overflow Exploits...

Pavel Machek (pavel@suse.cz)
Mon, 3 Jan 2000 00:17:27 +0200


Hi!

> > In any case, I suspect that if something randomly added some random
> > value between 0 and 128k to the stack pointer at startup time, it would
> > also go a fairly long way towards thwarting overrun attacks --- but make
> > no mistake, it's still only papering over the problem.
>
> I posted a kernel patch that did this a couple years back. And it's not
> really worth it. Assuming you can stick several kB on the stack, you can
> easily cut your guessing work factor by a lot.

Why not move it by 100Megs or so?
Pavel

-- 
I'm pavel@ucw.cz. "In my country we have almost anarchy and I don't care."
Panos Katsaloulis describing me w.r.t. patents me at discuss@linmodems.org

- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.rutgers.edu Please read the FAQ at http://www.tux.org/lkml/