Security Basics mailing list archives

Alternative to EIP


From: "Peter Manis" <manis () digital39 com>
Date: Mon, 19 Nov 2007 11:50:22 -0500

I have an application that I think I have found a flaw in and it is
dumping a lot of information to ECX, but EIP is not being overwritten
so I can't just throw in a jmp ecx.  Is there an alternative location
to place jmp code?  I found something about using SEH, but don't quite
understand how to use it in this situation and the more articles I
find on it the worse it gets.

Thanks,
Pete


Current thread: