• [$] Hardening the kernel against heap-spraying attacks

    From LWN.net@1337:1/100 to All on Thu Mar 21 15:15:06 2024
    [$] Hardening the kernel against heap-spraying attacks

    Date:
    Thu, 21 Mar 2024 15:07:29 +0000

    Description:
    While a programming error in the kernel may be subject to direct
    exploitation, usually a more roundabout approach is required to take
    advantage of a security bug. One popular approach for those wishing to
    take advantage of vulnerabilities is heap spraying , and
    it has often been employed to compromise the kernel. In the future,
    though, heap-spraying attacks may be a bit harder to pull off, thanks to the "dedicated bucket allocator" proposed by Kees Cook.

    ======================================================================
    Link to news story:
    https://lwn.net/Articles/965837/


    --- Mystic BBS v1.12 A47 (Linux/64)
    * Origin: tqwNet UK HUB @ hub.uk.erb.pw (1337:1/100)