All the latest UK technology news, reviews and analysis

Infosec: Experts warn of null pointer flaws

by Robert Jaques

21 Apr 2008

Be the first to comment

  • Tweet this
Infosec Europe 2008
Infosec Europe 2008

Recently discovered Flash vulnerabilities indicate that 'null pointer' security flaws could quickly evolve into "the next big thing in hacking exploits ".

Security vendor Tier-3 warned that null pointer security flaws are exploitable and could quickly replace buffer overflows as the next big threat.

A 'null pointer' is a link in software code that points to an empty location in computer memory.

Geoff Sweeney, chief executive at Tier-3, said: "Buffer overflows are still an issue, but they are a problem that has been tackled by the industry for many years.

"Null pointer de-referencing has not received anywhere near the same level of attention, which means that users need to be more vigilant than ever."

Sweeney added that computer users could face problems if a reliable exploit approach for null pointer de-referencing can be harnessed.

Organisations and home users will need to be on alert as their infrastructure is already under constant threat, particularly when the affected software is as pervasive as Adobe's Flash.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

IT priorities for 2012

What is the most important IT priority for your company this year?

99%

0%

1%

0%

0%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Accurev

Top 5 software development challenges

This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes

Talend

Rubbish in, rubbish enterprise

Why good data management at all levels is essential in the modern business (video, 6mins)

Field/Site Engineering Manager/Leader

Field/Site Engineering Manager/Leader Brief: Polar...

Product Manager, Open Repository (ref:BMC/PMR)

Product Manager, Open Repository (ref:BMC/PMR) End...

Java/JEE Software Developer-Dotcom/eCommerce Software House

Java/J2EE Software Developer/Programmer - Dotcom/ eCommerce...

Field/Site Engineering Manager/Leader

Field/Site Engineering Manager/Leader Brief: Polar...

To send to more than one email address, simply separate each address with a comma.