![Day[0] cover image](https://wsrv.nl/?url=https%3A%2F%2Fd3t3ozftmdmh3i.cloudfront.net%2Fproduction%2Fpodcast_uploaded_nologo%2F1589585%2F1589585-1553556841291-2e3a293ad9c2e.jpg&w=320&h=320)
Binary Ninja's Decompiler, git credential leak, cross-platform LPEs
Day[0]
00:00
The S and B Ghost a Vulnerability Is Still There, but It's Not Fixed Yet.
This is a follow up to the s and b ghost vulnerability. It gives you an out of bounds memory corruption on the heap through an inmature overflow in the de compress function. You can use that to get an arbitrary kernel, right? I'm not going totalk about that issue too much, just because we already cover that in depth on the the episode z talked about pso 36 a. But suffice it to say they basically get arbitrary physical memory through that m d l method.
Play episode from 02:05:44
Transcript


