logoalt Hacker News

skupigtoday at 12:03 AM1 replyview on HN

You would also need some sort of ASLR leak to make this exploitable


Replies

woodruffwtoday at 12:43 AM

Speaking from firsthand experience: codec and other media processing libraries are some of the easiest software to find address leaks in.

(There are a number of reasons for this, not least being that C makes it very easy to ship partially initialized memory over the wire.)

show 1 reply