Skip to content

Guessable random #2

@insuyun

Description

@insuyun

Hi.

While testing, I found that Guarder is using time as its random seed (https://github.com/UTSASRG/Guarder/blob/master/libguarder.cpp#L239),
which makes certain behaviors of Guarder predictable.
I think it is not a good design for securing allocators.

Best,
Insu Yun

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions