Collected research
Why Code Security Matters - Even in Hardened Environments
Asks whether an arbitrary file write still yields code execution on a read-only filesystem. Because libuv exposes its anonymous signal pipe via /proc, a Node.js process can be fed a forged signal message whose handle pointer is dereferenced and whose callback is then invoked; since official Node builds are not position-independent, a scan of static segments finds data usable as the fake handle and a stack-pivot gadget.
Record
- Researcher
- Stefan Schiller
- Published by
- Sonar
- Date
- Topic
- Other
In the archive
Tags
This page is the archive's own catalogue record. The research is the work of Stefan Schiller, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .