Quantcast
Channel: BOT24
Viewing all articles
Browse latest Browse all 8064

Safe Rowhammer Privilege Escalation

$
0
0
Problem description: The row-hammer attack is a method, where the physical properties of the DRAM chip are exploited: Flushing one row frequently may trigger bit flips in adjecent rows (see here). One Problem is, that each row contains many pages belonging to various processes or the operating system. Hammering might cause also bit flips in any of those, thus causing system instability.

The following article demonstrates an approach to nail down a memory page from a SUID-binary or ld-linux itself to a suitable physical memory location and then hammer it without any risks here.....http://www.halfdog.net/Security/2015/SafeRowhammerPrivilegeEscalation/

Viewing all articles
Browse latest Browse all 8064

Trending Articles