Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

[CVE-2020-6831] Exploiting Android Messengers with WebRTC: Part 2

Summary

I started off by going through WebRTC bugs I had filed in the past to see if any had the potential to break ASLR. Even if a bug was fixed long ago, it is an indicator of where similar bugs could potentially be found. One such bug was CVE-2020-6831, which is an out-of-bounds read in usrsctp.
CVE
CVE-2020-6831
Published
Collected

original ↗