Fastbin Attacks

Fastbins are the classical caching mechanism in glibc. While partially superseded by tcache in modern versions, they remain relevant when tcache is exhausted or disabled.

TechniqueDescription
Fastbin DupThe classic double-free leading to overlapping chunks.
Dup into StackEscalating a double-free to gain stack control.
Dup ConsolidateBypassing size checks via malloc_consolidate.
House of SpiritThe original fastbin stack-allocation attack.
Table 1: Exploits targeting the fastbin system.