From mboxrd@z Thu Jan 1 00:00:00 1970 To: 9fans@cse.psu.edu From: "Douglas A. Gwyn" Message-ID: Content-Type: text/plain; charset=us-ascii; format=flowed Content-Transfer-Encoding: 7bit References: Subject: Re: [9fans] pathetic Date: Thu, 26 Feb 2004 10:41:13 +0000 Topicbox-Message-UUID: f922631a-eacc-11e9-9e20-41e7f4b1d025 Of course separate I&D doesn't solve buffer overrun problems, which can still modify the buggy program's data in ways that the programmer did not plan for. The attacker gets less control if he can't force-feed instructions, but he can still wreak havoc. If nothing else, he can cause denial of service.