Äú¿ÉÒÔ¾èÖú£¬Ö§³ÖÎÒÃǵĹ«ÒæÊÂÒµ¡£

1Ôª 10Ôª 50Ôª





ÈÏÖ¤Â룺  ÑéÖ¤Âë,¿´²»Çå³þ?Çëµã»÷Ë¢ÐÂÑéÖ¤Âë ±ØÌî



  ÇóÖª ÎÄÕ ÎÄ¿â Lib ÊÓÆµ iPerson ¿Î³Ì ÈÏÖ¤ ×Éѯ ¹¤¾ß ½²×ù Model Center   Code  
»áÔ±   
   
 
     
   
 ¶©ÔÄ
  ¾èÖú
ÔÆ¶ËÄ£ºý²âÊÔÍÚ¶´ÊµÀý
 
×÷Õߣºð°Î² À´Ô´£ºFreeBuf ·¢²¼ÓÚ£º 2017-5-16
  1776  次浏览      27
 

Ò»¡¢¼ò½é

Fuzzing(Ä£ºý²âÊÔ)ÊÇÒ»ÖÖÓÃÓÚʶ±ðÈí¼þbugÒÔ¼°Â©¶´µÄ·½·¨¡£¾ÍĿǰµÄ·¢Õ¹Ç÷ÊÆÀ´ËµFuzzingÕýÏò×ÅÔÆ¶ËÂõ½ø£¬Ïà½ÏÓÚ´«Í³Fuzzing·½Ê½£¬ÔƶËFuzzingʹµÃÄ£ºý²âÊÔËٶȼӿìÒ²¸ü¼ÓÁé»î¡£ÔÚ±¾½Ì³ÌÖУ¬ÎÒÃǽ«ÓëÄãһͬ×ßÍêÔÆ¶ËÄ£ºý²âÊÔµÄÈ«¹ý³Ì(¼´²¿Êð£¬FuzzingÒÔ¼°Ê¹ÓÃsoftScheck Cloud Fuzzing Framework (sCFF)¿ò¼Ü¼ìË÷½á¹û)¡£ÎÒÃǽ«ÒÔÔËÐÐÔÚUbuntu 16.04ÉϵÄtcpdump4.9°æ±¾ÎªÀý½øÐÐÑÝʾ£¬¶ÁÕß¿ÉÏÂÔØsCFF¿ò¼Ü£¬ºÍÎÒÃÇÒ»Í¬ÍæË£¡£

¶þ¡¢±³¾°ÖªÊ¶

µÚÒ»Õ½ڽ«½²½âÔÚʹÓùý³ÌÖлáÓöµ½µÄһЩ»ù´¡ÎÊÌâ¡£µ±È»£¬Èç¹ûÄã¶ÔÔÆ¶ËÄ£ºý²âÊÔÓÐÒ»¶¨¾­Ñé»òÕß¶ÔÕâЩ»ù´¡ÎÊÌâ×ã¹»Á˽âµÄÇé¿öÏ¿ÉÒÔÌø¹ý±¾Õ½ڡ£´ËÍ⣬ÎÒÃÇÇ¿ÁÒ½¨Òé´ÓÉϵ½ÏÂÒÀ´ÎÔĶÁ±¾ÎÄ£¬×ÓÕ½ڿÉÄÜÓÐЩ¼ò¶Ì£¬µ«ÊǶ¼»áÌṩ´ó¼Ò½øÒ»²½Á˽âÏêÇéµÄ´«ËÍÃÅ¡£

1. Fuzzing

FuzzingÊÇÒ»ÏîÓÃÓÚÈí¼þÇ¿¶È²âÊԵļ¼Êõ¡£ÆäºËÐÄ˼ÏëÊÇ×Ô¶¯»ò°ë×Ô¶¯µÄÉú³ÉËæ»úÊý¾ÝÊäÈëµ½Ò»¸ö³ÌÐòÖУ¬²¢¼à¿ØÄ¿±ê³ÌÐòÒì³££¬Èç±ÀÀ££¬¶ÏÑÔ(assertion)ʧ°Ü£¬ÒÔ·¢ÏÖ¿ÉÄܵijÌÐò´íÎ󣬱ÈÈçÄÚ´æÐ¹Â©¡£

ÕâЩÒì³£´ó¶àÊý¶¼ÊÇÈí¼þ©¶´£¬¾­Ñé·á¸»µÄ¹¥»÷ÕßÍêÈ«¿ÉÒÔ½øÐÐÀûÓá£ÓÉÓÚÆä×Ô¶¯»¯ÌØÐÔÒÔ¼°¿ÉÒÔÓ¦ÓÃÓÚËùÓÐÈí¼þÖУ¬Fuzzing³£×÷Ϊ°²È«×¨¼ÒµÄ»ù±¾×°±¸´æÔÚ¡£¾¡¹ÜÖªÏþÔ´´úÂë¿ÉÒÔ¼Ó¿ìÄ£ºý²âÊÔµÄËÙ¶È£¬µ«ÊDz¢·Ç±ØÐëµÄ¡£ÊýÊ®ÄêÀ´£¬Ä£ºý²âÊÔ¹¤¾ßÒÔ¼°Ä¿±êÓ¦Óö¼ÊÇÔÚ±¾µØ¼ÆËã»úÉÏÔËÐС£È»¶øËæ×Ÿ÷ÖÖÔÆ¼ÆËã·þÎñÉÌÐËÆð£¬ËƺõÔÚÔÆ¶ËÔËÐÐÄ£ºý²âÊÔ¹¤¾ßÒ²ÊǸö²»´íµÄÑ¡Ôñ¡£ÊÂʵÉÏÏñ΢Èí£¬¹È¸èµÈ´óÐ͹«Ë¾ÒѾ­ÊµÏÖÔÚÔÆ¶Ë½øÐÐÄ£ºý²âÊÔÁË¡£ÔÚÔÆ¶ËÄ£ºý²âÊÔ·½Ã棬΢Èí»¹ÒªÁìÏÈÒ»²½£¬ÆäSpringfieldÏîÄ¿ÉõÖÁ»¹Ïò¿ª·¢ÕßÌá¹©ÔÆ¶ËÄ£ºý²âÊÔ·þÎñ¡£

Ïà¶ÔÓÚ´«Í³Ä£ºý²âÊÔ£¬ÔƶËÄ£ºý²âÊÔÓÐÄÄЩÓŵãÄØ?Ê×ÏÈÄã²»ÐèÒª¶îÍ⹺Âò¼ÆËã»ú£¬Ê¡Ç®£¬½ÚÊ¡¿Õ¼ä£¬²»ÐèÒª»¨¹ý¶àʱ¼äÈ¥ÉèÖû·¾³µÈµÈ£¬ÔƶËÄ£ºý²âÊÔµÄÖ÷ÒªÓÅÊÆ»¹ÊÇËüËù¾ßÓеÄÁé»îÐÔ£¬Í¬Ò»Ê±¼ä³ÌÐò¿ÉÒÔÔÚ¶à¸ö²Ù×÷ϵͳÉϽøÐвâÊÔ£¬¼ì²âÊÇ·ñ»á³öÏÖ²»Í¬±íÏÖÐÐΪ¡£Èç¹ûÒ»¸öÏîÄ¿¶ÔÊý¾ÝÍÌÍÂÁ¿ÒªÇó½Ï¸ß£¬¾Í¿ÉÒÔÀûÓÃRAID0ÕóÁÐÖеÄSSD¡£µ±Ò»¸öÓ¦ÓóÌÐòÐèÒª´óÁ¿µÄRAM£¬Ò²¿ÉÒÔÑ¡ÔñÒ»¸öÏàÓ¦µÄʵÀý¡£Èç¹ûÐèÒª²âÊÔÒ»¸öwebÓ¦ÓûòÕßÊÇÍøÂçЭÒ飬ÕâÀïÓÐÐí¶àµÍ½×ÖÕ¶Ë£¬ËùÒÔÏà¶ÔÀ´ËµÍê³ÉÈÎÎñµÄ»¨·Ñ¾ÍºÜ±ãÒË¡£

µ±È»ÕâÀïÒ²ÊÇ´æÔÚȱµãµÄ¡£Ê×ÏÈÄãµÃÏàÐÅΪÄãÌá¹©ÔÆ·þÎñµÄÉ̼ң¬ÒòΪËùÓÐÊý¾Ý¶¼ÊÇÔÚÔÆ¶ËÔËÐУ¬¶ø·ÇÄã¸öÈ˵ļÆËã»ú¡£´ËÍ⣬Äã¶àÓü¸¸öÔÂËùÐèÒªÖ§¸¶µÄ¼Û¸ñ²î²»¶àÒ²¹»Äã×Ô¼ºÔÙÂòһ̨¼ÆËã»úµÄ¼Û¸ñÁË¡£

2. Amazon AWS

Amazon Web ServicesÊÇÖ¸AmazonÌṩµÄ¸÷ÀàÔÆ¶Ë·þÎñºÏ¼¯£¬Ä¿Ç°AWSÊÇÈ«Çò×î´óµÄÒ»¼ÒÌá¹©ÔÆ¼ÆËã·þÎñµÄ¹«Ë¾¡£AWSÖÐÓÐÒ»¸öÃûΪElastic Compute Cloud (EC2)µÄ×é¼þ£¬EC2ÔÊÐíÓû§×Ô¼ºÅäÖÃÐéÄâ»ú×÷Ϊ·þÎñÆ÷ʹÓá£ÔÚÔÆ¶Ë´´½¨µÄÕâ¸öÐéÄâ·þÎñÆ÷ʵÀý£¬ÔÚ´´½¨Ê±¾Í¿ÉÒÔÑ¡Ôñ²Ù×÷ϵͳ£¬Ô¤°²×°Èí¼þ£¬×ÊÔ´·ÖÅäµÈ¸÷ÖÖÉèÖá£ÖÁÓÚ²Ù×÷ϵͳ£¬Óû§¿ÉÒÔÒÀ¿¿AmazonÅÓ´óµÄ¾µÏñ¿âAMI½øÐÐÑ¡Ôñ£¬ÎÒÃÇ¿ÉÒÔ´ÓAmazonÌṩµÄ100ÓàÖÖ²»Í¬µÄ»úÆ÷ÅäÖÃÖÐ×ÔÓÉÑ¡Ôñ¡£Óû§Ö»ÐèÒª°´Ã¿Ð¡Ê±Ö§¸¶·ÑÓ㬵±È»ÅäÖÃÔ½¸ßÊÕ·ÑÔ½¹ó¿©!

3. softScheck Cloud Fuzzer Framework

softScheckΪÁËÈÃÄ£ºý²âÊÔ¹ý³Ì¸ü¼ÓÇáËÉ£¬Ê¹ÓÃPython 3¿ª·¢ÁËsoftScheck Cloud Fuzzer Framework(sCFF)£¬¸Ã¿ò¼ÜʹÓÃBoto 3 APIÓëAWS½øÐÐͨÐÅ¡£sCFF×ñÑ­Unix·¶Ê½½«²»Í¬µÄ×Ó³ÌÐò·Ö¿ª£ºÒ»¸ö³ÌÐòרעһ¼þÊ¡£

4. American fuzzy lop

American fuzzy lop (afl)ÊÇsCFF¿ò¼ÜÖеÄÒ»¸öÄ£ºý²âÊÔ¹¤¾ß¡£ÒÔÆäËÙ¶È£¬¿É¿¿ÐÔ£¬¸´¹Å·ç¸ñµÄUIÉè¼ÆÒÔ¼°ºÕºÕÕ½¹¦¶øÎÅÃû¡£Èç¹û¿ÉÒÔ»ñµÃ²âÊÔÈí¼þµÄÔ´´úÂ룬²»½öÄÜÉú³É¸ü¼Ó¿Í¹ÛµÄÄ£ºý²âÊÔ½á¹û£¬»¹ÄÜÌá¸ß²âÊÔ¸²¸ÇÂÊ¡£±àÕß×¢£ºµ±Ç°´ó¶àÊýÔ¶³Ì´úÂëÖ´ÐкÍÌØÈ¨ÌáÉýµÈ±È½ÏÑÏÖØµÄ©¶´»ù±¾ÊÇʹÓÃFuzzing¼¼ÊõÍÚ¾òµÄ£¬È»¶øFuzzing¼¼ÊõÈÔÈ»´æÔÚן²¸ÇÂʵ͵ÄȱÏÝ¡£¶øÐí¶àµÄ´úÂë©¶´ÐèÒª¸ü´óµÄ·¾¶¸²¸ÇÂʲÅÄÜ´¥·¢£¬¶ø²»ÊÇͨ¹ý´¿´âµÄËæ»ú³¢ÊÔ¡£

5. tcpdump

TcpdumpÊÇÒ»¿îÖøÃûµÄÍøÂçÊý¾Ý°ü·ÖÎö¹¤¾ß¡£ËüÄÜץȡ£¬ÏÔʾ£¬ÒÔpcapÎļþ¸ñʽ±£´æÍøÂçÖеÄÊý¾Ý°ü£¬Ö®ºóÕâЩÊý¾Ý½«ÒÔ¸üÓѺõķ½Ê½Ìṩ¸øÊ¹ÓÃÕß¡£²»Í¬ÓÚÀÏ´ó¸çWireshark£¬TcpdumpÊÇÒ»¸ö·Ç½»»¥Ê½ÃüÁîÐгÌÐò£¬¶ÔÓÚÄ£ºý²âÊÔÀ´Ëµ¸ü¼Ó·½±ã¡£

6. GNU Debugger

GNU DeBugger (GDB),¿ÉÒÔ¶ÔÈí¼þÔËÐÐ״̬½øÐе¥²½·ÖÎö£¬¸ü¾«È·µÄÕÒ³öµ¼Ö³ÌÐò±ÀÀ£µÄÔ­Òò¡£Èç¹û·ÖÎöµÄÊǰüº¬µ÷ÊÔ±êÖ¾µÄ¶þ½øÖÆ´úÂ룬Äã¿ÉÒÔÖªµÀµ±Ç°³ÌÐòÕýÔÚÔËÐдúÂëµÄÄÇÒ»ÐУ¬¶ÔÓÚÐÞ¸´bugÀ´Ëµ¸ü¼ÓÇáËÉ¡£ÉõÖÁ»¹¿ÉÒÔÔÚÔËÐÐʱÐÞ¸ÄijЩ±äÁ¿µÄÖµ£¬ÓÃÒÔ¿ìËÙ¹Û²ì±äÁ¿Öµ¸Ä±äÊÇ·ñÄÜÐÞ¸´bug¡£

Èý¡¢Ê¹ÓÃsCFFÀ´¶Ôtcpdump½øÐÐÄ£ºý²âÊÔ

½éÉÜÍê±³¾°ÖªÊ¶ºó£¬½Ó׿ÌÐøÎÒÃÇÎÄÊ×Ìáµ½µÄtcpdump 4.9©¶´·¢ÏÖÖ®Âá£ÕâÒ»Õ·ÖΪÁ½¸ö²¿·Ö£¬Ê×ÏȾÍÊÇÕ½ÚÁÐ±í£¬ÕâÊÇÐèÒªÄãÔÚ¼ÌÐø±¾½Ì³Ì֮ǰÍê³ÉµÄÈÎÎñ¡£ÓÉÓÚÎÄÕÂÆª·ùµÄÏÞÖÆ£¬ÕâЩÄÚÈݲ¢Ã»ÓÐдÈëÎÄÕ£¬»¹ºÃÍøÉÏÒѾ­ÓдóÁ¿µÄÎÄÕ½̳̿ÉÒÔʹÓá£Æä´Îº­¸ÇÁËԤģºý²âÊԽ׶Σ¬Ö÷Òª½²½âÁËÔÚÕæÊÇ»·¾³Ï½øÐÐÄ£ºý²âÊÔ֮ǰӦ¸Ã×öµÄÊÂÇ飬×îºó¼´ÊÇ·¢ÏÖ©¶´ºóÄã¸ÃÔõô×ö¡£

1. ǰÆÚ¹¤×÷

Èç¹ûÄãÏëÒªÒÔÔÆ¶ËÄ£ºý²âÊԵķ½·¨ÕÒ³ötcpdumpÖдæÔڵĩ¶´£¬ÄãÊ×ÏÈÐèÒªÍê³ÉһЩ±¾½Ì³ÌÃ»Éæ¼°µ½µÄ²½Ö裬»ù±¾ÉÏÕâЩ²Ù×÷¿ÉÒÔ¹é½áΪAWSÒÔ¼°sCFF¿ò¼ÜµÄÅäÖá£Èç¹ûÄãÏëÒÔ´«Í³µÄ±¾µØÄ£ºý²âÊÔ·½·¨Ñ°ÕÒ©¶´£¬»òÕß½ö½öÖ»ÊÇÁ˽âÒ»ÏÂÔÆ¶ËÄ£ºý²âÊÔ£¬Äã¿ÉÒÔÌø¹ýÕâЩ²½Öè¡£

±ØÑ¡Ï

´´½¨Ò»¸öAWSÕ˺Å

µ¼³öAWSÃÜÔ¿IDºÍÃÜÔ¿

.aws/configÖÐÓ¦¸Ã°üº¬ÄãµÄÓòÐÅÏ¢£¬.aws/credentialsÖÐÓ¦¸Ã°üº¬ÃÜÔ¿IDºÍ·ÃÎÊÃÜÔ¿

´´½¨SSH°²È«×飬ÒÔÔÊÐíʵÀýÓëÍⲿ¶Ë¿Ú22Ö®¼ä½øÐÐͨÐÅ

´´½¨²¢ÏÂÔØÃÜÔ¿¶Ô(SSHͨÐÅÐèҪʹÓõ½ÕâЩÃÜÔ¿)

ÏÂÔØ²¢°²×°sCFF;

¿ÉÑ¡Ï

ΪÁ˽øÐÐÄ£ºý²âÊÔ£¬ ÐèÒª°²×°AFLµÄÓïÑÔ»·¾³

È·±£afl-collectÒÔ¼°GDB + exploitable pluginÒѰ²×°

2. Ԥģºý²âÊÔ½×¶Î

ǰÆÚ¹¤×÷Íê³ÉÖ®ºó£¬½Ó×űãÏÂÔØtcpdump 4.9°æ±¾µÄÔ´´úÂë¡£ÄãÒ²¿ÉÒÔÏÂÔØ×îеÄgit°æ±¾£¬ËäÈ»±¾ÎÄ×÷Ϊ°¸ÀýµÄ©¶´ÔÚа汾ÖÐÒѽøÐÐÐÞ¸´£¬µ«Ë­Äܱ£Ö¤²»»áÓÐÆäËû¾ªÏ²ÄØ?ÔÚÏÂÔØÔ´´úÂëÖ®ºó£¬Ê¹ÓÃafl-gcc±àÒë¶ÔÓÚÖ®ºóµÄÄ£ºý²âÊÔÊÇÓаïÖúµÄ(CC=afl-gcc ./configure && make)

±àÒë³É¹¦Ö®ºó£¬ÔËÐÐscff-mkconfigÖ¸Áî´´½¨Ò»¸ösCFFÏîÄ¿Îļþ¡£ÇëÈ·±£½«targetÉèÖÃΪtcpdump£¬²ÎÊýÉèÖÃΪ¨Ce ¨Cr @@¡£ÆäÖÐ-eºÍ-r¶¼ÊÇtcpdumpµÄ²ÎÊý£¬-e±íʾ´òÓ¡À©Õ¹Í·£¬-r±íʾ¶ÁÈ¡Îļþ¡£ÕâÁ½¸ö±êÖ¾ÔÚÖ®ºó»á±»aflÿ´ÎÉú³ÉµÄÄ£ºý²âÊÔÎļþÌæ»»¡£¼Çס£¬Èç¹ûÄãÊÇÊǵÚÒ»´Î×¢²áAWS t2»úÆ÷£¬Ö»ÒªÔËÐÐʱµÍÓÚ750Сʱ¶¼¿ÉÒÔÃâ·ÑʹÓá£ËùÒÔÄã¿ÉÄÜ»á¼á³ÖʹÓÃt2»úÆ÷½øÐÐÄ£ºý²âÊÔ¡£ÎªÁ˸ü¿ìµÄµÃµ½²âÊÔ½á¹û£¬ÍƼö´ó¼ÒʹÓÃÒ»¸öÄ£°æ£¬Ê¹ÓÃÁËÒ»¸ö170btyesµÄpcapÎļþ°üº¬ipv4ͨÐÅÊý¾Ý¡£×÷Ϊ½è¼ø£¬ÒÔÏÂΪÎÒÃÇͨ¹ýscff-mkconfigÃüÁî´´½¨µÄÅäÖÃÎļþ£º

[INSTANCES] 
amiami = ami-0963b466
gid = tcpdump49
instancetype = t2.micro
name = auto
numberofmachines = 4
platform = linux

[FUZZING]
dependencies = none
fuzzer = afl
fuzzdir = fuzzing
inputdir = fuzzing/input
outputdir = fuzzing/output
template = ipv4.pcap
target = tcpdump
args = -e -r @@

Èç½ñ¿ÉÒÔͨ¹ýscff-create-instancesÃüÁîÀ´´´½¨EC2ʵÀý£¬Äã¿ÉÒÔʹÓÃÃÜÔ¿¶Ôͨ¹ýSSH½øÐÐͨÐÅ¡£

3. Ä£ºý²âÊÔ½×¶Î

½ÓÏÂÀ´£¬ÎÒÃÇ¿ÉÒÔͨ¹ýscff-ctrl . bootstrapÃüÁî¶Ô½«ÓÃÓÚÄ£ºý²âÊԵĻúÆ÷½øÐÐÉèÖá£Ò»µ©ÉèÖÃÍê³É£¬ÕýʽµÄÄ£ºý²âÊԱ㿪ʼ¡£sCFFÌṩÁ˵¥Ä£FuzzingºÍ·Ö²¼Ê½Fuzzing¡£ÔÚµ¥Ä£FuzzingÏ£¬Ã¿¸öʵÀý¶¼»áµ¥¶ÀÔËÐÐÄ£ºý²âÊÔ¹¤¾ß;·Ö²¼Ê½Fuzzing£¬ËäȻͬÑùÿ¸öʵÀýÔËÐÐÒ»¸öÄ£ºý²âÊÔ¹¤¾ß£¬µ«Ä£ºý²âÊÔÊý¾Ý»áÔÚʵÀý¼ä¹²Ïí£¬ÕâÑù¿ÉÒÔÌáÉý²âÊÔËÙ¶È¡£Èç¹ûÄãÓµÓÐÁ½¸öÒÔÉϵÄʵÀý£¬ÎÒÃÇÍÆ¼öʹÓ÷ֲ¼Ê½Fuzzingģʽ£¬ÒÔscff-ctrl . distributedÖ¸ÁîÆô¶¯·Ö²¼Ê½Ä£Ê½¡£Èç¹ûÏëÒªÁ˽âÄ£ºý²âÊÔµÄ״̬£¬ÎÒÃÇ¿ÉÒÔͨ¹ýä¯ÀÀÆ÷½øÐв鿴¡£

Äã¿ÉÒÔʹÓÃscff-ctrl . grab-findingsÃüÁîËæÊ±ÏÂÔØµ¼ÖÂÕâЩ±ÀÀ£µÄÎļþ¡£

4. ²âÊÔÍê³Éºó

ÔËÐÐscff-exploitcheckÃüÁî¿ÉÒÔ¶ÔÕâЩ±ÀÀ£Îļþ½øÐзÖÎö£¬ÎóÅкÍÖØ¸´³öÏֵıÀÀ£ÐÅÏ¢½«»á±»¹ýÂË£¬×îºóʣϵÄÐÅÏ¢½«»áÓÃÓÚ©¶´µÄ¼ì²âºÍÀûÓá£

Èç¹ûÐÅÏ¢ÖÐÓкìÉ«EXPLOITABLE±êÇ©£¬ÄÇôÕâÀï´æÔÚ©¶´µÄ¿ÉÄÜÐԾͷdz£¸ßÁË¡£ÔÙÓÃgdb¶ÔËù·¢ÏÖµÄÄÚÈݽøÐмì²â¡£ÈçÏÂͼ£¬tcpdump 4.9µÄÎļþprintsl.cÖдæÔÚÒ»¸ö¿ÉÀûÓõÄ©¶´¡£

¾­¹ý½øÒ»²½µÄµ÷ÊÔ£¬ÎÒÃÇ¿ÉÒÔµÃÖªdirΪ255£¬²¢ÇÒdirÒ²ÊÇlastlenÖеÄÖ¸Õë(¶¨ÒåΪlastlen[2][255])£¬ÕâÀï´æÔÚ²ÎÊýÔ½½ç£¬½ø¶øµ¼Ö³ÌÐò±ÀÀ£¡£

ΪÁËÐÞ¸´Õâ¸ö´íÎó£¬ÎÒÃÇҪôµ÷ÕûdirµÄÖµ£¬ÒªÃ´¼ì²édirµÄÖµÊÇ·ñÔÚ0ºÍ2Ö®¼ä¡£ÔÚdir = p[DIR_SLX]ºóÃæÉèÖÃÒ»¸ö¶Ïµã£¬È»ºóÔÚgdbÖÐÐ޸ĸÃÖµ(ÀýÈç0,p=0)

ÔÙ¶ÔÔ´´úÂë½øÐбàÒ룬֮ºó¼ì²é³ÌÐòÊÇ·ñ»¹»á±ÀÀ£¡£

ËÄ¡¢×ܽá

ÓÉÓڸé¶´ÐèÒªÓû§Ê¹ÓÃ-e²ÎÊýÀ´´ò¿ªpcapÎļþ²Å¿ÉÒÔÍê³É¹¥»÷£¬Î£º¦²¢²»ÊÇÌØ±ðÑÏÖØ¡£

µ±ÎÒ½«¸Ã©¶´±¨¸æ¸øtcpdump°²È«ÍŶӣ¬ËûÃǵÄÏìÓ¦ËٶȵÄÈ·³ÆÔÞ£¬¸Ã©¶´ÒÑÔÚ4.10°æ±¾Öеõ½ÐÞ¸´¡£µÃÒæÓÚÔÆ¶ËÄ£ºý²âÊÔÒÔ¼°ÓÅÐãµÄ¹¤¾ß°ü£¬Õû¸ö²âÊÔ¹ý³Ì´óÔ¼»¨·ÑÎå¸öСʱ£¬ÆäÖаüÀ¨Ê¶±ðÒÔ¼°ÐÞ¸´Â©¶´¡£

Downloading and compiling tcpdump:            10 minutes 
Pre Fuzzing Phase + template generation: 10 minutes
Fuzzing Phase: 110 minutes
Post Fuzzing Phase: 60 minutes
Patch writing and retesting: 90 minutes
--------------------------
Total: 300 minutes
   
1776 ´Îä¯ÀÀ       27
Ïà¹ØÎÄÕÂ

ÔÆ¼ÆËãµÄ¼Ü¹¹
¶ÔÔÆ¼ÆËã·þÎñÄ£ÐÍ
ÔÆ¼ÆËãºËÐļ¼ÊõÆÊÎö
Á˽âÔÆ¼ÆËãµÄ©¶´
Ïà¹ØÎĵµ

ÔÆ¼ÆËã¼ò½é
ÔÆ¼ÆËã¼ò½éÓëÔÆ°²È«
ÏÂÒ»´úÍøÂç¼ÆËã--ÔÆ¼ÆËã
ÈídzÎöÔÆ¼ÆËã
Ïà¹Ø¿Î³Ì

ÔÆ¼ÆËãÔ­ÀíÓëÓ¦ÓÃ
ÔÆ¼ÆËãÓ¦ÓÃÓ뿪·¢
CMMIÌåϵÓëʵ¼ù
»ùÓÚCMMI±ê×¼µÄÈí¼þÖÊÁ¿±£Ö¤