Corrupting memory control structures under XP

From: xenophi1e (oliver.lavery_at_sympatico.ca)
Date: 07/01/03

  • Next message: Berend-Jan Wever: "Re: GetPC code (was: Shellcode from ASCII)"
    Date: 30 Jun 2003 22:50:43 -0000
    To: vuln-dev@securityfocus.com
    
    
    ('binary' encoding is not supported, stored as-is)

    Hello,

    Does anyone have a link to information about exploiting memory control
    structures under windows, specifically XP?

    The best I've found is the Halvar Flake BlackHat briefings paper, but
    AFAICT the XP allocator has changed somewhat. I want to find cleaner ways
    of exploiting an overflow I'm working on, but it can be pulled off
    without messing with heap structures, so I'm not really motivated enough
    to go and reverse ntdll.dll myself.

    Cheers,
    ~x


  • Next message: Berend-Jan Wever: "Re: GetPC code (was: Shellcode from ASCII)"