This is big research. Stack overflows (exaustion) _are_ exploitable in user space.
This tweet is unavailable
3
13
18
turns out it has been around for over a decade
An Ancient Kernel Hole is (Not) Closed: grsecurity.net/an_ancient_ke…. A lesson in real non-embargoed security.
1
1
2
Yup, what's funny is that we tested vfprintf to jump over the guard page on a grsecurity kernel. :) (even though the post says not affected)
1
what guard page? you mean the heap-stack gap?
1
What we tested is jumping the guard page between two thread stacks in userland. But you probably meant grsec is not affected in kernelland?
2
Replying to @marver @joernchen
FYI, RAND_THREADSTACK != heap_stack_gap

Jun 19, 2017 · 6:12 PM UTC