logo

Linux Heap Exploitation Intro Series: The magicians cape – 1 Byte Overflow

ID: 48701f32-8baa-5435-8dd7-31b1220d401e

STIX ID: report--48701f32-8baa-5435-8dd7-31b1220d401e

Feed Name: SensePost Blog

Threat Score
40/100

Date Published: 2017-09-20

Date Updated: 2026-04-29

...
...

This blog post demonstrates how single-byte and null-byte heap overflows can be abused in ptmalloc2 to alter chunk size and metadata, enabling overlapping allocations, forgotten chunks, information leaks, and arbitrary memory writes. It walks through detailed scenarios, provides proof-of-concept code and videos, and offers an online challenge to practice exploiting the described techniques.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.