[41686] in bugtraq
AIX Heap Overflow paper
daemon@ATHENA.MIT.EDU (David Litchfield)
Thu Dec 15 19:41:10 2005
Message-ID: <00ed01c601a1$672f66c0$5800a8c0@ngssoftware.com>
From: "David Litchfield" <davidl@ngssoftware.com>
To: <bugtraq@securityfocus.com>
Date: Thu, 15 Dec 2005 18:00:15 -0000
MIME-Version: 1.0
Content-Type: text/plain;
format=flowed;
charset="iso-8859-1";
reply-type=original
Content-Transfer-Encoding: 7bit
I've just published a paper on AIX heap overflows. I wrote it back in August
but wanted to wait until a couple of flaws I discovered whilst researching
the topic were fixed by IBM. IBM released the patches today. You can get the
paper at http://www.databasesecurity.com/dbsec/aix-heap.pdf
Cheers,
David Litchfield