Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

[CVE-2023-3079] Chaining N-days to Compromise All: Part 1 — Chrome Renderer RCE

theori.io | vulnerability | CVE-2023-3079 | #rce | #exploit | #v8 | #chrome | #type-confusion | #cve-2023-3079

Summary

The opener in the chain series: a detailed analysis of CVE-2023-3079, a V8 type-confusion bug exploited for Chrome renderer RCE, from inline caches to a The Hole leak and OOB access.
Published
Collected

original ↗

Related coverage

back