208 - A Timing Side-Channel for Kernel Exploitation and VR in the wake of Rust
2023-5-4 07:54:46 Author: dayzerosec.com(查看原文) 阅读量:15 收藏

This one is easy enough, missing a bounds check when handling nested messages allowed for sending a message with a bunch of nested messages that would be parsed and written out of bounds on a fixed size buffer.


文章来源: https://dayzerosec.com/podcast/208.html
如有侵权请联系:admin#unsafe.sh