Subscribe via feed.
Archive for August, 2017

VLC Media Player v2.2.6 Umbrella – DoS Vulnerability

Posted by deepcore under exploit (No Respond)

RubyMine 2016.1 – CMD Manual Buffer Overflow Exploitation

Posted by deepcore under exploit (No Respond)

Microsoft Edge Charka PreVisitCatch Missing Call

Posted by deepcore under exploit (No Respond)

Microsoft Edge Chakra does not call SetIsCatch for all cases in PreVisitCatch.

Microsoft Edge Source Fetch Out-Of-Bounds Access

Posted by deepcore under exploit (No Respond)

Microsoft Edge suffers from an out-of-bounds access vulnerability when fetching source.

Microsoft Edge Charka Failed Re-Parse

Posted by deepcore under exploit (No Respond)

InterpreterStackFrame::ProcessLinkFailedAsmJsModule in Microsoft Edge Chakra incorrectly re-parses.

Microsoft Edge Chakra PushPopFrameHelper Incorrect Usage

Posted by deepcore under exploit (No Respond)

Microsoft Edge Chakra suffers from an incorrect usage of PushPopFrameHelper in InterpreterStackFrame::ProcessLinkFailedAsmJsModule.

Microsoft Edge Chakra TryUndeleteProperty Incorrect Usage

Posted by deepcore under exploit (No Respond)

Microsoft Edge Chakra suffers from an incorrect usage of TryUndeleteProperty.

Microsoft Edge Chakra Incorrect Jit Optimization

Posted by deepcore under exploit (No Respond)

This is a follow-up finding that the fix for an incorrect jit optimization with TypedArray setter in Microsoft Edge Chakra may not be sufficient.

Microsoft Edge Chakra JavascriptFunction::EntryCall Mishandled CallInfo

Posted by deepcore under exploit (No Respond)

Microsoft Edge Charka does not handle CallInfo properly in JavascriptFunction::EntryCall.

Microsoft Edge Chakra Uninitialized Arguments

Posted by deepcore under exploit (No Respond)

Microsoft Edge Chakra suffers from an uninitialized arguments vulnerability.