Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

[CVE-2022-34169] Gregor Samsa: Exploiting Java's XML Signature Verification

Summary

Earlier this year, I discovered a surprising attack surface hidden deep inside Java’s standard library: A custom JIT compiler processing untrusted XSLT programs, exposed to remote attackers during XML signature verification. This post discusses CVE-2022-34169, an integer truncation bug in this JIT compiler resulting in arbitrary code execution in many Java-based web applications and identity providers that support the SAML single-sign-on standard.
CVE
CVE-2022-34169
Published
Collected

original ↗