Advertising (This ad goes away for registered users. You can Login or Register)

kernel aslr enable?

Underground PS4 discussions
Forum rules
Forum rule Nº 15 is strictly enforced in this subforum.
Locked
Takezo
Posts: 14
Joined: Mon Oct 20, 2014 7:05 am

kernel aslr enable?

Post by Takezo »

Hi,

Two months ago, i read that kaslr is disable. But today i got some info leak, it seems that kaslr is enable
FF FF FE 00 4X XX XX XX where X's are random value.
May be i am wrong ...
Advertising
dal3boy
Posts: 20
Joined: Sun Jan 04, 2015 10:52 am

Re: kernel aslr enable?

Post by dal3boy »

I don't think that Sony would disable ASLR so don't be to excited
Advertising
MichelMichel
Posts: 12
Joined: Wed Mar 11, 2015 10:12 pm

Re: kernel aslr enable?

Post by MichelMichel »

dal3boy wrote:I don't think that Sony would disable ASLR so don't be to excited
It is possible that the kernel used for the PS4 don't have KASLR activated, It is based on FreeBSD 9.X which comes without kASLR... It's possible that Sony had the FreeBSD 10.X kASLR in the PS4 kernel...

Without pointer leak (just with "maybe" and poor quality speech), it's difficult to know if kASLR is enabled or not... Takezo, is going on the right path to have the answer !


@Takezo,
Do you call the same sequence of syscalls (don't forget Webkit syscalls) ?
dal3boy
Posts: 20
Joined: Sun Jan 04, 2015 10:52 am

Re: kernel aslr enable?

Post by dal3boy »

Maybe, but if you look little bit more there was already ASLR implementation for 9.x in 2012
http://translate.google.com/translate?d ... rg/node/11

Everything is possible but Sony will not make mistake (learned from PS3)
MichelMichel
Posts: 12
Joined: Wed Mar 11, 2015 10:12 pm

Re: kernel aslr enable?

Post by MichelMichel »

dal3boy wrote:Maybe, but if you look little bit more there was already ASLR implementation for 9.x in 2012
http://translate.google.com/translate?d ... rg/node/11

Everything is possible but Sony will not make mistake (learned from PS3)
Maybe, but if you look little bit more kASLR is not user land process ASLR... Only a pointer leak will give us right the answer.
Locked

Return to “Programming and Security”