![]() |
![]() |
![]() |
Alleged Bugs in Windows Vista ASLR Implementation
Thursday, October 5th, 2006
I’ve had some people ask me about a paper that was recently published detailing alleged bugs in
Address Space Layout Randomization in Windows Vista. It’s great to see people looking at and scrutinizing Windows Vista before we ship.
With that said, it turns out this analysis is incomplete and leads the author to an incorrect assumption. Let me explain.
There are three areas of randomization enabled by default in Windows Vista:
* Image Randomization
* Stack Randomization
* Heap Randomization
The author is looking only at the entropy in the stack randomization. Michael Howard’s Web Log : Alleged Bugs in Windows Vista’s ASLR Implementation
Popular Posts
Please read our Disclaimer




