30.07.2014 Views

Attacking the Vista Heap - 2008

Attacking the Vista Heap - 2008

Attacking the Vista Heap - 2008

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

LFH header overflow II<br />

LFH_HEAP_ENTRY:<br />

CONTEXT INDEX FLAGS<br />

0 4 6 7<br />

• RtlpLowFrag<strong>Heap</strong>Free uses INDEX to<br />

determine adjusted location of chunk<br />

before checksum test<br />

• Only when FLAGS == 5 and<br />

CONTEXT == 0x0000002

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!