Re: [PAPER]: Integer array overflows.
From: Yves Younan (yyounan_at_vub.ac.be)
Date: 09/20/03
- Previous message: Steven Hill: "Re: controlling ebp/eip of a frame, does it always lead to possible code execution?"
- In reply to: Steven M. Christey: "Re: [PAPER]: Integer array overflows."
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
To: "Steven M. Christey" <coley@mitre.org> Date: 20 Sep 2003 21:04:47 +0200
On Tue, 2003-09-16 at 22:55, Steven M. Christey wrote:
> It would be interesting if somebody tackled the difference between
> "integer overflows" and "signedness errors," as I've seen the terms
> being used interchangeably.
The difference is clearly pointed out in phrack 60 article 10:
http://www.phrack.org/show.php?p=60&a=10
I also have a section in my master thesis explaining integer overflows
and integer signedness errors:
http://fort-knox.org/thesis.php
- YY
They that can give up liberty to obtain a little temporary safety
deserve neither liberty nor safety.
- Benjamin Franklin
- application/pgp-signature attachment: This is a digitally signed message part
- Previous message: Steven Hill: "Re: controlling ebp/eip of a frame, does it always lead to possible code execution?"
- In reply to: Steven M. Christey: "Re: [PAPER]: Integer array overflows."
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|
|