Drobe :: The archives
About Drobe | Contact | RSS | Twitter | Tech docs | Downloads | BBC Micro

Reply to thread

If I've got this straight, an attacker would have to find a specific bug in the device's programs: - a null pointer under reproducible conditions - before a STM, or better still, a looping store - and where arbitrary data can be inserted And then be able to force a reset or execute some other vector.

And for it to work the device mustn't: allow writes to zero page, or use ROM directly (or flash-ROM which isn't directly writable), or put its vector table elsewhere.

I'd have thought finding other security bugs might be easier.

 is a RISC OS UserLoris on 25/4/07 7:43PM
[ Reply | Permalink | Report ]

Please login before posting a comment. Use the form on the right to do so or create a free account.

Search the archives

Today's featured article

  • South East 2008 show round up
    News from the event in the south of the UK
     42 comments, latest by diomus on 9/11/08 8:45PM. Published: 19 Oct 2008

  • Random article

  • News in brief
    South East show, Cybervillage plans plus software news
     25 comments, latest by SkyPilot on 12/8/05 5:35PM. Published: 8 Aug 2005

  • Useful links

    News and media:
    IconbarMyRISCOSArcSiteRISCOScodeANSC.S.A.AnnounceArchiveQercusRiscWorldDrag'n'DropGAG-News

    Top developers:
    RISCOS LtdRISC OS OpenMW SoftwareR-CompAdvantage SixVirtualAcorn

    Dealers:
    CJE MicrosAPDLCastlea4X-AmpleLiquid SiliconWebmonster

    Usergroups:
    WROCCRONENKACCIRUGSASAUGROUGOLRONWUGMUGWAUGGAGRISCOS.be

    Useful:
    RISCOS.org.ukRISCOS.orgRISCOS.infoFilebaseChris Why's Acorn/RISC OS collectionNetSurf

    Non-RISC OS:
    The RegisterThe InquirerApple InsiderBBC NewsSky NewsGoogle Newsxkcddiodesign


    © 1999-2009 The Drobe Team. Some rights reserved, click here for more information
    Powered by MiniDrobeCMS, based on J4U | Statistics
    "An increasing number of Drobe articles don't relate to RISC OS. Who cares if the Finn brothers sell Sibelius to a bunch of yanks"
    Page generated in 0.0198 seconds.