[CVE-2023-21674] Chaining N-days to Compromise All: Part 2 — Windows Kernel LPE (a.k.a Chrome Sandbox Escape)
theori.io | vulnerability | CVE-2023-21674 | #use-after-free | #sandbox-escape | #windows-kernel | #cve-2023-21674 | #alpc | #chrome-sandbox
Summary
Part two of the chain: how CVE-2023-21674, a use-after-free in the Windows NT kernel involving ALPC, was exploited to escape the Chrome sandbox — the year’s first in-the-wild kernel bug.
- Published
- Collected
Skip to content