[35375] in bugtraq
exploiting overflowed kmalloc() memory?
daemon@ATHENA.MIT.EDU (infamous41md@hotpop.com)
Sat Jun 19 08:27:28 2004
Date: Fri, 18 Jun 2004 13:53:47 -0400
From: infamous41md@hotpop.com
To: bugtraq@securityfocus.com
Message-Id: <20040618135347.36c3a3f4.infamous41md@hotpop.com>
Mime-Version: 1.0
Content-Type: text/plain; charset=US-ASCII
Content-Transfer-Encoding: 7bit
has anyone done any research on exploiting overflows with memory returned by kmalloc()? after briefly looking at source, i see that internally it relies on the kmem_cache_alloc() functions. i didn't see any sort of coalescing as with dlmalloc, so maybe it's not even possible? anyone have any links/info about this?