[CVE-2018-1002105] Finding unhandled errors using CodeQL
blog.trailofbits.com | blog | CVE-2018-1002105 | #vulnerability-research | #kubernetes | #static-analysis | #codeql | #variant-analysis | #cve-2018-1002105
Summary
Unhandled error codes can be exploitable, as Kubernetes CVE-2018-1002105 showed. This walkthrough uses CodeQL with a custom query pack to run variant analysis and find every similar bug at once.
- Published
- Collected
Skip to content