The three referenced exploits take advantage of an inherent problem in RPC, in which an attacker gets to supply the size of an output buffer, and RPC allocates the buffer and (more importantly) initializes it to zeroes, which causes the entire memory range to become committed.
Category: vulnerabilities
|
Posted by
Staff
337 days ago
Via: http://research.eeye.com |
Discuss
Via: http://research.eeye.com |
Discuss
Add this link to...
Bury




Comments