Windows ASLR Vulnerability
Address Space Layout Randomisation (ASLR) protects against code-reuse and memory overflow attacks by loading executables at non-predictable locations.
This content has been archived
This article no longer conforms to NHS Digital's standards for cyber alerts, and may contain outdated or inaccurate information. Use of this information contained in this page is at your own risk
Summary
Address Space Layout Randomisation (ASLR) protects against code-reuse and memory overflow attacks by loading executables at non-predictable locations.
Affected platforms
The following platforms are known to be affected:
Threat details
An error in the way Microsoft Enhanced Mitigation Experience Toolkit (EMET) and Defender Exploit Guard implement ASLR may result in applications using non-DYNAMICBASE flags being loaded at static locations, voiding the benefit of using ASLR.
Remediation steps
Last edited: 17 February 2020 11:41 am