In , MAXPATHLEN is defined to be 1024 bytes.The for() loop here correctly bounds variable i to < 1023, such that when the loop has ended, no byte past npath[1023] may be written with \0. However, since i is also incremented in the nested statements here as ++i, it can become equal to 1024, and npath[1024] is past the end of the allocated buffer space.Then a null byte is written into npath[1024], overwriting the least significant byte of EBP.This can be exploited as a off-by-one overflow.The bug was fixed by Which changing the logic?

Database System Concepts
7th Edition
ISBN:9780078022159
Author:Abraham Silberschatz Professor, Henry F. Korth, S. Sudarshan
Publisher:Abraham Silberschatz Professor, Henry F. Korth, S. Sudarshan
Chapter1: Introduction
Section: Chapter Questions
Problem 1PE
icon
Related questions
Topic Video
Question

In <sys/param.h>, MAXPATHLEN is defined to be 1024 bytes.The for()
loop here correctly bounds variable i to < 1023, such that when the loop has
ended, no byte past npath[1023] may be written with \0. However, since i is also
incremented in the nested statements here as ++i, it can become equal to 1024,
and npath[1024] is past the end of the allocated buffer space.Then a null byte is
written into npath[1024], overwriting the least significant byte of EBP.This can
be exploited as a off-by-one overflow.The bug was fixed by Which changing the logic?

Expert Solution
steps

Step by step

Solved in 2 steps

Blurred answer
Knowledge Booster
Instruction Format
Learn more about
Need a deep-dive on the concept behind this application? Look no further. Learn more about this topic, computer-science and related others by exploring similar questions and additional content below.
Similar questions
  • SEE MORE QUESTIONS
Recommended textbooks for you
Database System Concepts
Database System Concepts
Computer Science
ISBN:
9780078022159
Author:
Abraham Silberschatz Professor, Henry F. Korth, S. Sudarshan
Publisher:
McGraw-Hill Education
Starting Out with Python (4th Edition)
Starting Out with Python (4th Edition)
Computer Science
ISBN:
9780134444321
Author:
Tony Gaddis
Publisher:
PEARSON
Digital Fundamentals (11th Edition)
Digital Fundamentals (11th Edition)
Computer Science
ISBN:
9780132737968
Author:
Thomas L. Floyd
Publisher:
PEARSON
C How to Program (8th Edition)
C How to Program (8th Edition)
Computer Science
ISBN:
9780133976892
Author:
Paul J. Deitel, Harvey Deitel
Publisher:
PEARSON
Database Systems: Design, Implementation, & Manag…
Database Systems: Design, Implementation, & Manag…
Computer Science
ISBN:
9781337627900
Author:
Carlos Coronel, Steven Morris
Publisher:
Cengage Learning
Programmable Logic Controllers
Programmable Logic Controllers
Computer Science
ISBN:
9780073373843
Author:
Frank D. Petruzella
Publisher:
McGraw-Hill Education