epoll 的 use-after-free 漏洞
guysrd.github.io | 博客 | #vulnerability-research | #memory-safety | #use-after-free | #android | #linux-kernel | #exploit-development | #rcu | #epoll
摘要
作者详解 Nicholas Carlini 发现的 epoll UAF:RCU 遍历器与 kfree() 竞争,形成对已释放 eventpoll 的受限写;他在 Pixel 10 上的利用尝试未能成功。
- 发布时间
- 收录时间
Skip to content