Top > Security > Misc > GMM

GMM - Guarded Memory Move

The Guarded Memory Move tool is useful for studying buffer overflows and catching them together with a "good" stack image. Once a stack overflow has been exploited, the back trace is already gone, as is information about parameters and local variables that are very important in understanding how the attacker is working out the exploit.

The GMM library uses dynamic function call interception to catch the most common functions that attackers use to exploit stack buffers. It uses the LD_PRELOAD capability and offers two services: first, it avoids buffer overflow to allow the attacker to execute shell-code on your machine. Second, where an exploit is detected, it saves the stack content and triggers a segmentation fault. The resulting core dump has the necessary information to debug the exploit and fix the software.

Obtaining

Web pagehttp://www.xmailserver.org/gmm.html
Source tarballhttp://www.xmailserver.org/gmm-0.4.tar.gz
Version 0.4 (beta) released on 2004-01-27
Licensed under The GNU General Public License, Version 2 or later.
This is not a GNU package.

Documentation

User reference in PDF from http://www.xmailserver.org/gmm.pdf
Support contacts


Project contacts

Maintainers
Developers

Related information

Interfaceslibrary
Source languagesC
Use requirementsglibc
Build prerequisitesgcc
Related programslibsafe

Entry information

License verified byJanet Casey <jcasey@gnu.org> on 2004-01-27
Entry compiled byDavide Libenzi <davidel@xmailserver.org>

Categories



The copyright licensing notice below applies to this text. The software described in this text has its own copyright notice and license, which can usually be found in the distribution itself.

Copyright © 2000, 2001, 2002, 2003, 2004 Free Software Foundation, Inc.

Permission is granted to copy, distribute, and/or modify this document under the terms of the GNU Free Documentation License, Version 1.1 or any later version published by the Free Software Foundation; with no Invariant Sections, with no Front-Cover Texts, and with no Back-Cover Texts. A copy of this license is included in the file COPYING.DOC.

Please report any problems in this page to bug-directory@gnu.org, or find out how you can help fix them.

The FSF provides this directory as a service to the free software community. Please consider donating to the FSF to help support this project.