Windows Vista Service Pack 1 and Windows Server 2008 now include support for Structured Exception Handling Overwrite Protection (SEHOP)
| Article ID | : | 956607 |
| Last Review | : | September 8, 2008 |
| Revision | : | 1.0 |
On This Page
INTRODUCTION
MORE INFORMATION
By default, SEHOP is enabled in Windows Server 2008. By default, it is disabled in Windows Vista. To enable SEHOP manually, follow these steps:
| 1. | Click Start, click Run, type regedit, and then press ENTER. | ||||
| 2. | Locate the following registry subkey:
HKEY_LOCAL_MACHINE SYSTEM CurrentControlSet Control Session Manager kernel DisableExceptionChainValidation
Note If you cannot find the DisableExceptionChainValidation registry entry under the HKEY_LOCAL_MACHINE SYSTEM CurrentControlSet Control Session Manager kernel subkey, follow these steps to create it:
|
||||
| 3. | Double-click DisableExceptionChainValidation. | ||||
| 4. | Change the value of the DisableExceptionChainValidation registry entry to 0 to enable it, and then click OK.
Note A value of 1 disables the registry entry. A value of 0 enables it. |
||||
| 5. | Exit Registry Editor. |
Known Issues
If you enable SEHOP, existing versions of Cygwin, Skype, and Armadillo-protected applications may not work correctly.
Note To resolve this issue, contact the software vendor for an update.
REFERENCES
Preventing the Exploitation of SEH Overwrites
For more information about a technique that you can use to help prevent the exploitation of SEH overwrites, visit the following third-party Web site:
The third-party products that this article discusses are manufactured by companies that are independent of Microsoft. Microsoft makes no warranty, implied or otherwise, about the performance or reliability of these products. Microsoft provides third-party contact information to help you find technical support. This contact information may change without notice. Microsoft does not guarantee the accuracy of this third-party contact information.
APPLIES TO
| • | Windows Server 2008 Datacenter without Hyper-V | |||||||||||||||||||||||||||||||||
| • | Windows Server 2008 Enterprise without Hyper-V | |||||||||||||||||||||||||||||||||
| • | Windows Server 2008 for Itanium-Based Systems | |||||||||||||||||||||||||||||||||
| • | Windows Server 2008 Standard without Hyper-V | |||||||||||||||||||||||||||||||||
| • | Windows Server 2008 Datacenter | |||||||||||||||||||||||||||||||||
| • | Windows Server 2008 Enterprise | |||||||||||||||||||||||||||||||||
| • | Windows Server 2008 Standard | |||||||||||||||||||||||||||||||||
| • | Windows Web Server 2008 | |||||||||||||||||||||||||||||||||
| • | Windows Vista Service Pack 1, when used with: | |||||||||||||||||||||||||||||||||
|
||||||||||||||||||||||||||||||||||
Keywords: |
kbexpertiseinter kbpubtypekc kbbug kbsecvulnerability kbsecbulletin kbsecurity kbexpertisebeginner KB956607 |
Microsoft Knowledge Base Article
This article contents is Microsoft Copyrighted material.
Microsoft Corporation. All rights reserved. Terms of Use | Trademarks
You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.
Back to the top
Leave a Reply