“The Maglev compiler is a mid-tier JIT compiler used by v8. Compared to the top-tier JIT compiler, TurboFan, Maglev generates less optimized code but with a faster compilation speed” (Chrome 114 以降

daruyanagidaruyanagi のブックマーク 2023/10/18 08:50



Getting RCE in Chrome with incomplete object initialization in the Maglev compiler

    SecurityGetting RCE in Chrome with incomplete object initialization in the Maglev compilerIn this post, I'll exploit CVE-2023-4069, a type confusion in Chrome that allows remote code execution (RCE...

    \ コメントが サクサク読める アプリです /

    • App Storeからダウンロード
    • Google Playで手に入れよう