Skip to main content

All Questions

1vote
2answers
274views

Exploitation tactics for heap over-reading?

One of recent CVEs particularly 2019-13615 related to VLC media player, attracted my attention because of the developer reaction: Any non-exploitable read overflow get CVSS of 9.8, like VLC is a ...
Croll's user avatar
2votes
0answers
690views

How to write a PoC of heap-based ROP? [closed]

I want to write a Proof-of-Concept to exploiting any heap-based vulnerability(e.g. heap overflow, use-after-free) where my ROP(return-to-programming, a kind of code-reuse attacks) payload is deployed ...
Matthewxie's user avatar

close