This is the mail archive of the
glibc-bugs@sourceware.org
mailing list for the glibc project.
[Bug dynamic-link/20105] bad version variable in elf_dynamic_do_Rel() elf/do-rel.h (2.23) causes coredump in dl-machine.h elf_machine_rela()
- From: "jason.vas.dias at gmail dot com" <sourceware-bugzilla at sourceware dot org>
- To: glibc-bugs at sourceware dot org
- Date: Wed, 18 May 2016 17:23:28 +0000
- Subject: [Bug dynamic-link/20105] bad version variable in elf_dynamic_do_Rel() elf/do-rel.h (2.23) causes coredump in dl-machine.h elf_machine_rela()
- Auto-submitted: auto-generated
- References: <bug-20105-131 at http dot sourceware dot org/bugzilla/>
https://sourceware.org/bugzilla/show_bug.cgi?id=20105
--- Comment #12 from Jason Vas Dias <jason.vas.dias at gmail dot com> ---
Aha! An interesting thing about that link map I uploaded :
it appears that OpenOffice-4.1.2 is an application that
goes through several stages during initialization :
1. It generates a vast list of potentially linkable libraries, and
attempts to dl_load() each one ;
2. It then decides which ones it needs, and unloads those it does not .
This is the wrong way round, IMHO .
But nevertheless, getting it past stage 1 does prove instructive in
exposing glibc bad pointer vulnerabilities.
--
You are receiving this mail because:
You are on the CC list for the bug.