On 10/05/2018 08:01, Li Qiang wrote: > Hello Andy and Paolo, > > I noticed you say that the pop ss may cause an escalate privilege for > the guest user. > I know the pop ss can't make code execution in linux. > So I don't understand how the guest user privilege escalate can be > achieved. By skipping any number of bytes, from 1 to 15, at the beginning of the #BP exception handler. Paolo > Could you please give me some more hint for this. > Thanks, > Li Qiang > >