Chromium: Incorrect size calculation when deserializing Mojo "Event" messages leading to OOB access

Basic Fields

SSV ID:
SSV-97178
Find Time:
2017-12-14
Submit Time:
2018-03-15
Level:
Category:
其他类型
Component:
Google Chrome
Author:
laginimaineb
Submitter:
Knownsec
CVE-ID:
Add
CNNVD-ID:
Add
CNVD-ID:
Add
ZoomEye Dork:
Add

Source

Detail

Contributor Got  0KB
Loading icon
have 0  exchange

PoC

Unavailable PoC

Reference Linking

Solutions

Temp Solutions

Unavailable Temp Solutions

Official Solution

Unavailable Official solution

Defense Solutions

Unavailable Defense Solutions

Popularity 2683
Need to bind phone before comment. Bind Now

Unavailable Comments

※Any content provided by this site, only to learn the code and services, not for illegal purposes