Re: OS stopping stack buffer overflow exploits

From: lamont@icopyright.com
Date: Sun Jun 04 2000 - 14:12:23 EST


glibc used to have trampoline code, which would prevent redhat 5.2 from
booting with solar designer's non-exec stack patch unless you had also
compiled it with trampoline emulation.

On Sun, 4 Jun 2000, Ingo Oeser wrote:
> On Sat, Jun 03, 2000 at 07:48:17PM -0700, Matthew Dharm wrote:
> > Hrm... this could cause some problems for applications which use
> > self-modifying code (i.e. trampoline handlers, etc.)
>
> Could you please show a daily example of any *need* for
> trampolines? I mean code, which could only be implemented
> (efficiently) via trampolines.
>
> I never saw one generated by GCC and never wrote an explicit one
> by myself. So for what important piece of code we do need it and
> can't code it without trampolines?
>
> Thanks in advance
>
> Ingo Oeser
> --
> Feel the power of the penguin - run linux@your.pc
> <esc>:x
>
> -
> To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
> the body of a message to majordomo@vger.rutgers.edu
> Please read the FAQ at http://www.tux.org/lkml/
>

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.rutgers.edu
Please read the FAQ at http://www.tux.org/lkml/



This archive was generated by hypermail 2b29 : Wed Jun 07 2000 - 21:00:19 EST