2016
10.31

The escape handler for 0x10000e9 lacks bounds checks, and passes a user specified size as the size to memcpy, resulting in a stack buffer overflow.

No Comment.

Add Your Comment

You must be logged in to post a comment.