Saltar al contenido

0x1000 · Área

Clases de vulnerabilidades

Los errores de seguridad de memoria se agrupan en unas pocas clases recurrentes. Cada guía muestra el patrón vulnerable en unas líneas de C, explica por qué corrompe la memoria y después presenta la corrección, la advertencia del compilador o el sanitizer que lo detecta y la mitigación que limita el daño.

Guías de esta área

  1. Why writing past a stack buffer is dangerous, the C patterns that cause it, how compilers and sanitizers catch it, and the fixes and mitigations that contain it.

  2. How heap memory bugs corrupt allocator metadata and object state, why use-after-free is so dangerous, and the allocator hardening, sanitizers and ownership rules that stop them.

  3. How integer overflow, truncation and signedness errors turn into memory corruption, why user-controlled format strings are dangerous, and the checks and warnings that prevent both.

Las guías se publican primero en inglés. Las traducciones llegarán después.

Otras áreas