@bobiroc
I certainly wouldn't say that an exploit being able to defeat ASLR/DEP was just a Quicktime problem! DEP is supposed to be enforced at the chip level, and should be implemented such that it is impossible to turn off. Are you running Windows 7? And if you are, does your boot.ini file contain a setting like "OptIn", "OptOut" or "AlwaysOn"? Anything other than "AlwaysOn" would imply that any lucky exploit might defeat ASLR/DEP.
This particular exploit sounds like it might be using Sotirov and Dowd's techniques, which would also make it specific to 32 bit platforms.
Discussion on:
Message 4 of 1
IBM Sponsored Resources
Resources from our Sponsor
- Oracle Exadata vs IBM: Netezza Compared
- Forrester TEI Report
- CIA Whitepaper
- Harnessing the Power of Advanced Analytics
- Tapping into Unleashed Business Potential with Advanced Analytics
- Unlock Analytic Performance with Revolution R for Enterprise and IBM: Netezza Data Warehouse Appliance
The best of ZDNet, delivered
ZDNet Newsletters
Get the best of ZDNet delivered straight to your inbox
