Day[0] cover image

Binary Ninja's Decompiler, git credential leak, cross-platform LPEs

Day[0]

00:00

The S and B Ghost a Vulnerability Is Still There, but It's Not Fixed Yet.

This is a follow up to the s and b ghost vulnerability. It gives you an out of bounds memory corruption on the heap through an inmature overflow in the de compress function. You can use that to get an arbitrary kernel, right? I'm not going totalk about that issue too much, just because we already cover that in depth on the the episode z talked about pso 36 a. But suffice it to say they basically get arbitrary physical memory through that m d l method.

Play episode from 02:05:44
Transcript

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app