期刊文献+

FreeBSD的地址空间随机化 被引量:1

ADDRESS SPACE RANDOMIZATION IN FREEBSD
下载PDF
导出
摘要 缓冲区溢出是一种最为常见的安全漏洞形式,在远程网络攻击中所占比重最大。地址空间随机化是一种针对缓冲区溢出攻击的有效防护技术。分别从栈、堆、动态库和可执行映像四个方面描述了地址空间随机化在FreeBSD6.0中的设计和实现,并对其防护果进行了评估。 Buffer overflow is one of most known security holes, and most of the remote network attacks are originated from it. Address space randomization is an effective defending technique against buffer overflow attacks. In this paper it describes the design and implementation of the address space randomization in FreeBSD6.0 from four aspects : stack, heap, dynamic library and executable image. The effectiveness evaluation of defence is also given.
出处 《计算机应用与软件》 CSCD 北大核心 2008年第6期1-2,13,共3页 Computer Applications and Software
基金 "十五"国家科技攻关计划项目支持(2005BA113A02)
关键词 地址空间随机化 栈随机化 缓冲区溢出 Address space randomization Stack randomization Buffer overflow
  • 相关文献

参考文献7

  • 1Cowan C, Wagle P, Pu C, et al. Buffer Overflows: Attacks and Defenses for the Vulnerabili-ty of the Decade [ EB/OL ]. http ://www. cse. ogi. edu/DISC/projects/immunix/discex00. pdf. 2000-1.
  • 2Perry Wagle, Crispin Cowan. StackGuard: Simple Stack Smash Protection for GCC. http ://gcc. fyxm. net/summit/2003/Stackguard. pdf.
  • 3Vendicator. Stack Shield. http://www. angelfire. com/sk/stackshield/. January 7 2000.
  • 4ExecShield. http ://people. redhat. com/mingo/exec-shield/.
  • 5PAX. http ://pax. grsecurity. net/.
  • 6Gaurav S Kc, Angelos D Keroraytis, Vassilis Prevelakis. Countering code-injection attacks with instruction-set randomization. Proceedings of the 10th ACM conference on Computer and communications security, October 27 - 30, 2003, Washington D. C. , USA.
  • 7OpenBSD. http ://www. openbsd. org.

同被引文献4

  • 1王清.0 day安全:软件漏洞分析技术[M].北京:电子工业出版社,2008:62-70.
  • 2Alexander Sotirov, Mark Dowd. Bypassing Browser Memory Protections [ EB ]. http ://taossa. com/archive/bhOSsotirovdowd, pdf.
  • 3何子昂.轻量组缓冲区溢出防护技术研究[D].成都:电子科技大学.2004.
  • 4陈扬,祝跃飞,梅强.Windows Vista的栈保护机制[J].计算机工程,2008,34(22):182-183. 被引量:3

引证文献1

二级引证文献2

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部