OS X Kernel Raw Cast Out-Of-Bounds Read

Proof of concept demonstrating an OS X kernel out-of-bounds read of an object pointer due to insufficient checks in raw cast to enum type.

Leave a Reply