[CVE-2020-9802] JITSploitation III: Subverting Control Flow
projectzero.google | vulnerability | CVE-2020-9802 | #cve | #exploit-development | #project-zero | #safari | #jitsploitation
Summary
This three-part series highlights the technical challenges involved in finding and exploiting JavaScript engine vulnerabilities in modern web browsers and evaluates current exploit mitigation technologies. The exploited vulnerability, CVE-2020-9802, was fixed in iOS 13.5, while two of the mitigation bypasses, CVE-2020-9870 and CVE-2020-9910, were fixed in iOS 13.6.
- CVE
- CVE-2020-9802
- Published
- Collected
Skip to content