Links

Lists

Latest Updates

Ruby On Rails List
Python list
Advanced Java
The JavaScript List
Apache Users
Full Disclosure
Linux Security

Search the archives!


[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Full-disclosure] Windows .ANI LoadAniIcon Stack Overflow


  • From: Larry at larryseltzer.com (Larry Seltzer)
  • Subject: [Full-disclosure] Windows .ANI LoadAniIcon Stack Overflow
  • Date: Mon, 2 Apr 2007 10:06:21 -0400

AS> A much simpler solution is to use heap spraying (which works fine on

AS> Vista) for systems that don't have DEP enabled.
TZ> Are we talking Sofware DEP or Hardware enforce DEP ? 

Heap spraying implies running code in the heap, which any DEP should
block. There are all kinds of software techniques that would detect heap
spraying. I'm sure any HIPS would block it. But like DEP they're not on
in Windows by default.

Larry Seltzer
eWEEK.com Security Center Editor
http://security.eweek.com/
http://blog.eweek.com/blogs/larry%5Fseltzer/
Contributing Editor, PC Magazine
larryseltzer at ziffdavis.com