Infosec.Pub
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
udunadanM to Exploit DevelopmentEnglish · 2 years ago

TheHole New World - how a small leak will sink a great browser (CVE-2021-38003)

starlabs.sg

external-link
message-square
0
link
fedilink
6
external-link

TheHole New World - how a small leak will sink a great browser (CVE-2021-38003)

starlabs.sg

udunadanM to Exploit DevelopmentEnglish · 2 years ago
message-square
0
link
fedilink
Introduction CVE-2021-38003 is a vulnerability that exists in the V8 Javascript engine. The vulnerability affects the Chrome browser before stable version 95.0.4638.69, and was disclosed in October 2021 in google’s chrome release blog, while the bug report was made public in February 2022. The vulnerability will cause a special value in V8 called TheHole being leaked to the script. This can lead to a renderer RCE in a Chromium-based browser, and has been used in the wild.
alert-triangle
You must log in or # to comment.

Exploit Development

exploitdev

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !exploitdev@infosec.pub

A curated community dedicated to strictly technical materials about vulnerability research, exploit development and reverse engineering.

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 1 user / day
  • 1 user / week
  • 1 user / month
  • 1 user / 6 months
  • 198 local subscribers
  • 479 subscribers
  • 83 Posts
  • 18 Comments
  • Modlog
  • mods:
  • udunadan
  • BE: 0.19.13
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org