基于Windows的CSRSS进程漏洞分析与利用

整理文档很辛苦,赏杯茶钱您下走!

免费阅读已结束,点击下载阅读编辑剩下 ...

阅读已结束,您可以下载文档离线阅读编辑

资源描述

201407AnalysisandExploitofCSRSSVulnerabilitiesbasedonWindowsLIMeng-zhe1,WUXue-li2,ZHANGTao1,WENWei-ping1(1.SchoolofSoftware&Microelectronics,PekingUniversity,Beijing102600,China;2.ChinaPetroleumGroupDongfangGeophysicalExplorationCo.,Ltd.,ChangqingShanxi710021,China)Abstract:Withadvancesintechnology,Windowsoperatingsystemhasimprovedsteadily.Thecombinationofmanymemoryprotectionmechanismsmakesthetraditionalbuffer-overflow-basedattackstobemoreuseless.Inthiscase,thekernelvulnerabilitiescanbeusedtobreakthroughthesecuritylineofdefenseasastartingpoint.IfthesevulnerabilitiesareusedbyvirusesandTrojans,thedefenseofsecuritysoftwarewillbecollapsed.Thatmeansaheavyblowtothesystemsecurity.SincetheMicrosoftWindowsNT'sdevelopment,theoperatingsystemhasbeendesignedtosupportanumberofdifferentsubsystems,suchasPOSIXorOS/2.ThispaperopensaseriesofCSRSS-orientedstudy,aimingatdescribingtheuncoveredCSRSSmechanisminternals.Althoughsomegreatresearchhasalreadybeencarriedoutbysomearticles,nothoroughcasestudyisavailableuntilnow.Thispapercoversboththeverybasicideasandtheirimplementations,aswellastherecentCSRSSchangesappliedinmodernoperatingsystems.Inaddition,standingonthepointofsafety,inthispaper,theWindowskernelvulnerabilitiesareclassified,asetofvulnerabilityresearchprocessispresented.Accordingtotheprocess,thisarticlestudieslocalprivilegeescalationvulnerabilityanddenialofservicevulnerabilityaboutCSRSS.ThroughtheanalysisoftheCVE-2011-1281vulnerability,use-after-freeexploitnotonlyappearsinthebrowservulnerabilities,butalsointhesoftwareofthesystem.Keywords:Windowssubsystem;CSRSS;Windowskernel;vulnerabilitiesstudydoi10.3969/j.issn.1671-1122.2014.07.005201407201407201407201407201407201407201407………………………………………201407…………………………201407

1 / 10
下载文档,编辑使用

©2015-2020 m.777doc.com 三七文档.

备案号:鲁ICP备2024069028号-1 客服联系 QQ:2149211541

×
保存成功