发明名称 PREVENTING STACK BUFFER OVERFLOW ATTACKS
摘要 Improved buffer overflow protection for a computer function call stack is provided by placing a predetermined ShadowKEY value on a function's call stack frame and copying the ShadowKEY, a caller EBP, and a return pointer are pushed onto a duplicate stack. The prologue of the function may be modified for this purpose. The function epilogue is modified to compare the current values of the ShadowKEY, caller EBP, and the return pointer on the function stack to the copies stored on the duplicate stack. If they are not identical, an overflow is detected. The preserved copies of these values may be copied back to the function stack frame thereby enabling execution of the process to continue. A function prologue and epilogue may be modified during compilation of the program.
申请公布号 CA2809516(A1) 申请公布日期 2014.09.13
申请号 CA20132809516 申请日期 2013.03.13
申请人 ALHARBI, KHALID NAWAF;LIN, XIAODONG;NORTHERN BORDERS UNIVERSITY 发明人 ALHARBI, KHALID NAWAF;LIN, XIAODONG
分类号 G06F21/54;G06F9/40;G06F12/14;G06F21/55 主分类号 G06F21/54
代理机构 代理人
主权项
地址