|
http://www.hackerschool.org/HS_Boards/zboard.php?AllArticle=true&no=20127 [º¹»ç]
¹öÆÛ¿À¹öÇÃ·Î¿ì °ü·Ã Áú¹®ÀÖ½À´Ï´Ù
È¥ÀÚ¼ µµÀúÈ÷ ¸ð¸£°Ú½À´Ï´Ù ¤Ð¤Ð
1. SYSTEMÇÔ¼ö¸¦ RET¿¡ µ¤¾î¾µ´ë
| BUF | SFP | RET | AAAA | */bin/sh" |
ÀÌ·±½ÄÀ¸·Î Çϴµ¥
RET¿¡¼ systemÀ» ÄÝÇϸé
| BUF | system.ebp | system.ret | AAAA | */bin/sh |
ÄÝÇÑ ÀÚ¸®¿¡ ret¸¦ ¾²°í SFP¸¦ ±ò°í ½ÃÀÛÇϴ°Š¾Æ´Õ´Ï±î?
Àú·¸°ÔµÇ¸é ebp+8 À§Ä¡¿¡ Àͫ塂 AAAAÀε¥ .... À̺κÐÀÌ ÇÞ°¥¸³´Ï´Ù..
2. ±×¸®°í GOTÁÖ¼ÒÀÇ ³¡Àº Ç×»ó NULLÀ̶ó´Â°Ô ÀÌÇØ°¡¾ÈµË´Ï´Ù.
EXECLÀÇ ÀÎÀÚ·Î »ç¿ëÇÒ¶§ GOT - 8ÀÇ ÁÖ¼Ò¸¦ ÁÖ°í »ç¿ëÇÏÁö¾Ê½À´Ï±î
ÀÌ·¸°ÔÇϸé *GOTÀÇ °ªÀ¸·Î ½Éº¼¸¯¸µÅ©¸¦ °É¾î¼ »ç¿ëÇϴµ¥
±× ÈÄ¿¡ NULLÀÌ ¾îµðÀÖ½À´Ï°¡? |
Hit : 7789 Date : 2011/03/06 04:45
|