download
- formatstringrevisited.pdfMD5: E3FD1FBC64FE67B056A9001987BFC5EA
SHA1:0949C48545B55D47BA1B453C7C214C7EF2F3FB81
summary
More Adventures in Format Strings
What?
This presentation covers a method for exploiting format string vulnerabilities which is compared to techniques used for exploiting heap smashes. It does not not cover the basics of the vulnerability because these seem ten a panny.
Why?
Much work has been written about covering the underlying principles of format strings but not much seemed to be written concerning this specific technique. More over is was written to push forward a method and library that can be used to optimise format strings to fit into smaller buffer spaces
Last Updated : 14/04/2008 15:11:37
Related Applications
- Breaking the links: Exploiting the linkerPresentation on exploiting linkers (as given at Uncon 0x12 and CRESTCon 2010)
- Introduction To Format StringsA presentation introducing format string problems
- VulnAppA vulnerable application written in ASP.net

