NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home / News / Microsoft

Microsoft


Some Windows Vista Randomization Is Better Than No Randomization

Isn't it?

By Marius Oiaga, Technology News Editor

1st of March 2007, 14:01 GMT

Adjust text size:


Some Windows Vista randomization is better than no Windows Vista randomization, right? Address Space Layout Randomization is one of the new security technologies introduced in Windows
Vista, and according to Symantec it has a prophylactic role. However, the Cupertino based security company has disputed and downplayed the role that randomization will play in protecting Windows Vista. Ollie Whitehouse, Symantec Architect and a member of the Security response team, has evaluated the Windows Vista ASLR and found it to be not as random as expected.

Non-uniform distribution of address usage for heap randomization, the fact that HeapAlloc has less entropy than malloc, an Image randomization bug and a PEB randomization bug are the issues Whitehouse has identified in ASLR.

"Are these problems the end of the world? No, not really. After all, some ASLR is better than no ASLR. However, these issues do potentially increase the likelihood of successful exploitation when compared to what could have been a perfect implementation," Whitehouse revealed.

Windows Vista Address Space Layout Randomization is a technology that randomly locates programs in memory with each execution or with every reboot. In this context, Microsoft has introduced a barrier that would permit Vista to mitigate the exploitation of memory corruption and memory manipulation vulnerabilities.

"The results of this analysis show that at least one aspect of ASLR's implementation did not perform as expected. Symantec found that one of the randomized components was not randomized consistently, resulting in a reduced degree of randomness in the layout of an application's memory. While ASLR continues to be effective, this reduction does increase the likelihood that an attacker can guess the correct address to target," Symantec informed.

According to the Cupertino based security vendor, Microsoft has already confirmed the ASLR issues and will address them with the release of Windows Vista Service Pack 1.
Read by 914 user(s) | Add comment | Link to this article TWEET THIS


Article rating:
Fair (2.5/5) 9 vote(s)    

Subscribe to news | Print article | Send to friend

© Copyright 2001-2009 Softpedia
Contact:

 

 

SEARCH THE NEWS ARCHIVE :




Today's News
| Yesterday's News | News Archive


MORE RELATED ARTICLES:


Windows Vista Causes Confusion Between "Secure" and "Security"

Symantec Security for the Impenetrable Vista

Windows Vista Security - a Journey Not a Destination

Symantec: Windows Vista's Security Strategy Is Wrong

A New Breed of Threats Is Cooking for Windows Vista

Symantec Has Bombarded Vista with 2,000 Instances of Malware

The Windows Vista MessageBox Vulnerability Goes Unpatched

Windows Vista Security Model - A Big Joke

Why Won't Microsoft Declare Windows XP Expired?

Windows Vista Secure Development Lifecycle

Windows Vista Support Lifecycle

Microsoft Will Evolve Virtualization Licensing for Windows Vista

Windows Vista Antivirus You Would Do Better to Avoid

Vista Security Gets Slaughtered

Microsoft Can't Protect Customers Alone

Microsoft Patches Critical Vulnerability In Windows Vista

Vista Opened to Local Privilege Escalation

Windows Vista Hardware Compatibility List

Vista's UAC Issues Extend to Security Policies

Microsoft Is Excluding Users from Vista Security Features

Windows Vista Defense-In-Depth

The True Limitations of Windows Vista Virtualization

Windows Vista UAC Implementation Vulnerability

Microsoft Guarantees That Hardware and Software Will Work with Windows Vista

User opinions:

No user comments yet.
Be the first to express your opinion using the form below!

Share your opinion:

Your Name:
Your Email Address:
(will not be used for commercial purposes)
Solve this to prove you're not a bot: =
Your review/opinion:

 




Windows tabGames tabDrivers tabMac tabLinux tabScripts tabMobile tabHandheld tabGadgets tabNews tab

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   ENTER NEWS SITE   |   ENGLISH BOARD   |   ROMANIAN FORUM