Stack overflow

Overflow vulnerability due to software coding error

Strictly speaking, a stack overflow is what happens when the amount of memory allocated to a program for its call stack is over-filled, causing the program to crash. In general use, particularly in security issues, the term 'stack overflow' refers to a stack buffer overflow, a type of buffer overflow taking place on the call stack.

A stack buffer overflow attack is an attempt to exploit a coding vulnerability in software, where the boundaries for data being passed onto the stack are inadequately controlled. This allows malicious data to be written to the stack in such a way that it overwrites other areas, which can then in turn lead to the data written to those areas being executed as program code. Many major malware attacks have exploited such vulnerabilities, including the hugely widespread Slammer and Blaster worms.


Poll

Have you ever actually read an End-User License Agreement?
I always read them in full
I've never read to the end of one
No

Leave a comment
View 4 comments

vb2008-sidebar

Jobs

In Virus Bulletin's jobs pages among others:
Virus Bulletin currently has 132,936 registered users.