期刊文献+

基于Windows平台的RPC缓冲区溢出漏洞研究

The Research of RPC Overflow Vulnerability
下载PDF
导出
摘要 Windows系统中潜在的RPC缓冲区溢出漏洞是目前信息系统面临的最严重安全威胁之一。本文介绍了RPC原理,分析了缓冲区溢出的原理,总结了RPC漏洞分析的一般方法,并针对一个RPC漏洞进行了详细分析,包括定位溢出函数,分析溢出点,溯源和溢出实现。 The RPC overflow vulnerability existing in Windows operating system constitute one of the most serious security threat towards computer network. In this paper the principles of RPC are introduced, theories of buffer overflow are analyzed and the methods of analyzing the RPC overflow vulnerability are also summarized. In allusion to a vulnerability it analyzes the process of the RPC overflow vulnerability exploit, including locking overflow function, analyzing overflow point and achieving exploit.
出处 《信息网络安全》 2009年第5期38-40,共3页 Netinfo Security
关键词 RPC 缓冲区溢出 漏洞 RPC buffer overflow leak
  • 相关文献

参考文献2

二级参考文献12

  • 1曾凤.缓冲区溢出攻击的防范策略[J].微电子学与计算机,2005,22(9):51-53. 被引量:3
  • 2唐洪英.一种防止缓冲区溢出攻击的新方法[J].微电子学与计算机,2006,23(4):68-70. 被引量:2
  • 3Nicolas Falliere.A new way to bypass windows heap protections[EB/OL].http://www.securityfocus.com/infocus/1846
  • 4DCE 1.1:Remote Procedure Call[EB/OL].http://www.opengroup.org/public/pubs/catalog/c706.htm
  • 5Alexander Anisimov.Defeating Windows XP SP2 Heap protection and DEP bypass[EB/OL].http://www.maxpatrol.com/defeating-xpsp2-heap-protection.pdf
  • 6王炜,方勇.缓冲区溢出教程.北京:北京中电电子出版社,2005
  • 7Wagner D, Foster J, Brewer E, et al. A first step towards automated detection of buffer overrun vulnerabilities//Network and Distributed System Security Symposium. San Diego, CA, February 2000
  • 8Hsueh M, Tsai T,Iyer R. Fault injection techniques and tools. IEEE Computer, April 1997:75-82
  • 9Wilander J, Kamkar M. A Comparison of Publicly Available Tools for Dynamic Buffer Overflow Prevention//Proceedings of the 10th Network and Distributed System Security Symposium. San Diego, CA, February 2003:149-162
  • 10Viega J, Bloch J T, Kosho T, et al. 1TS4 : A Static Vulnerability Scanner for C and C++ CodeffAnnual Computer Security Applications Conference. December 2000

共引文献2

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部