Lancern's Treasure Chest
08:03 · Sep 28, 2023 · Thu
Getting RCE in Chrome with incorrect side effect in the JIT compiler
Comments
via fro@users.lobste.rs (fro)
The GitHub Blog
Getting RCE in Chrome with incorrect side effect in the JIT compiler
In this post, I'll exploit CVE-2023-3420, a type confusion in Chrome that allows remote code execution (RCE) in the renderer sandbox of Chrome by a single visit to a malicious site.
Home
Powered by
BroadcastChannel
&
Sepia