- 1、本文档共15页,可阅读全部内容。
- 2、原创力文档(book118)网站文档一经付费(服务费),不意味着购买了该文档的版权,仅供个人/单位学习、研究之用,不得用于商业用途,未经授权,严禁复制、发行、汇编、翻译或者网络传播等,侵权必究。
- 3、本站所有内容均由合作方或网友上传,本站不对文档的完整性、权威性及其观点立场正确性做任何保证或承诺!文档内容仅供研究参考,付费前请自行鉴别。如您付费,意味着您自己接受本站规则且自行承担风险,本站不退款、不进行额外附加服务;查看《如何避免下载的几个坑》。如果您已付费下载过本站文档,您可以点击 这里二次下载。
- 4、如文档侵犯商业秘密、侵犯著作权、侵犯人身权等,请点击“版权申诉”(推荐),也可以打举报电话:400-050-0827(电话支持时间:9:00-18:30)。
- 5、该文档为VIP文档,如果想要下载,成为VIP会员后,下载免费。
- 6、成为VIP后,下载本文档将扣除1次下载权益。下载后,不支持退款、换文档。如有疑问请联系我们。
- 7、成为VIP后,您将拥有八大权益,权益包括:VIP文档下载权益、阅读免打扰、文档格式转换、高级专利检索、专属身份标志、高级客服、多端互通、版权登记。
- 8、VIP文档为合作方或网友上传,每下载1次, 网站将根据用户上传文档的质量评分、类型等,对文档贡献者给予高额补贴、流量扶持。如果你也想贡献VIP文档。上传文档
查看更多
程序溢出的基础和原理(The basic principle and procedure of overflow)
程序溢出的基础和原理(The basic principle and procedure of overflow)
A: basic knowledge
The memory of the computer running the distribution area is divided into 3
Program section: not allowed to write
Data section: static global variables in the data segment and at the beginning of the program is loaded at run time
The stack area for the dynamic placement process of local and temporary variables are calculated in the stack allocation inside and in the process of pressing the call back
Data access. The stack is a first in a queue. General computer system stack and memory in the opposite direction of the direction. Stack XX push = ESP 4, XX pop=ESP+4. is out of the stack in a function call, the stack will be pushed into the parameter, the return address, EBP. If the function has a local variable, then, in the open space to the corresponding stack structure variables. The function terminates, the contents of these variables will be lost. But is not clear. When the function returns the pop-up EBP, restore the stack to the function call address pops the return address to the EIP to continue program execution.
In the C language program, the stack is the reverse of the order parameter. For example, func (a, B, C). When the parameters into the stack is to press C, press B, and finally A. when take parameters,
Instruction execution legend:
Instruction area
Executive area
0123
Zero
Four
8 call 100 function parameters of 1 (3), 2 (10)
C
100123
100 perform processing
One hundred and four
One hundred and eight
10C
110 return call stack area
0123
If EBP XX is not the space allocated over the place
200 save before EBP4 (pointer data segment can be used for local dynamic
Now the EBP ESP- variable) is equal to the current value of dynamic data,
ESP=200
204 0C 000000
Here is the return address of the program
208 parameter 1, filling 1
The 20C parameter 2 filled 2
Two hundred and ten
Examples of WIN program DEMO, demo parameters lead to change the return address
Clarifying the main 4 bit filling
您可能关注的文档
- 泰山药用植物(The medicinal plants in Taishan).doc
- 泰山极顶(Taishan peak).doc
- 洋务运动的文化意义与中体西用说的提出(The Westernization Movement and the cultural significance of western theory).doc
- 法兰克福学派的中国之旅——从一篇被人遗忘的序言说起(The Frankfurt school Chinese Tour - from a forgotten preface).doc
- 洋酒知识大扫盲(Wine knowledge literacy).doc
- 洛阳春节、牡丹文化(The Spring Festival, Luoyang peony culture).doc
- 法律硕士之优势及如何发挥其优势(The advantage of master of laws and how to exert its advantages).doc
- 法律知识20道经典例题和解析(20 classic example of legal knowledge and analysis).doc
- 活动互动游戏(Play interactive games).doc
- 活动概况(Overview of activities).doc
- 移印刷类标签的特点及应用(The characteristics and application of shift printing labels).doc
- 程序改错201271(Modify the program 201271).doc
- 稽古录·魂部(Ancient records of soul).doc
- 程序逻辑题(Program logic problem).doc
- 穷人思维(Poor thinking).doc
- 穴蚀的原因,与电化学腐蚀有什么关系,以及冷却水的温度关系 - 『发动机技术论坛-设计匹配』 - 中国汽车工(The reason of cavitation, what is the relationship with the electrochemical corrosion, and the temperature of the cooling water - Engine Technology For.doc
- 程序规范方法(Program specification method).doc
- 空中的生物(Biological air).doc
- 穿汉服的基本礼仪(The basic etiquette wear Hanfu).doc
- 穿调整型内衣必看10个问题(Must wear adjustable underwear 10 questions).doc
最近下载
- 《神经外科病历书写》课件.ppt VIP
- TGDSTT 1-2021 柔性密封自锁接口聚乙烯缠绕实壁排水管及配件.docx VIP
- 2024年译林版九年级英语(上册)重点单词、短语、句型背诵手册.pdf VIP
- 人教版高中物理必修一第一章《运动的描述》测试题(含答案解析).doc VIP
- 2025CSCO头颈部肿瘤诊疗指南解读 (1)PPT课件.pptx VIP
- 2024年恩施州鹤峰县选调工作人员笔试真题.docx VIP
- 2025山西临汾隰县人力资源和社会保障局开发公益性岗位招用就业困难人员91人备考题库及答案解析.docx VIP
- 苏科版八年级第七章从粒子到宇宙复习.ppt VIP
- TSG T- 电梯维护保养规则.pptx VIP
- 2024活跃用户研究报告(小红书平台).pdf VIP
文档评论(0)