GrapheneOS (RSS Feed) on Nostr: Nearly all remote code execution vulnerabilities in the OS are memory corruption ...
Nearly all remote code execution vulnerabilities in the OS are memory corruption bugs: either use-after-free or buffer overflows. The majority involves the malloc heap and the rest mostly involves the stack which could also use MTE-based defenses to replace SSP + ShadowCallStack.
https://grapheneos.social/@GrapheneOS/111302269839125812Published at
2023-10-26 16:30:57Event JSON
{
"id": "0ed5a61ac36b1155d7ba7fe79f19dcb532a640a8aea8f256152c4ac24b7024cb",
"pubkey": "2306b336f168f4add8da924dae907d2a6b9c13fb0a06672bd7708295dec75da7",
"created_at": 1698337857,
"kind": 1,
"tags": [
[
"proxy",
"#https%3A%2F%2Fgrapheneos.social%2F%40GrapheneOS%2F111302269839125812",
"rss"
]
],
"content": "\n\nNearly all remote code execution vulnerabilities in the OS are memory corruption bugs: either use-after-free or buffer overflows. The majority involves the malloc heap and the rest mostly involves the stack which could also use MTE-based defenses to replace SSP + ShadowCallStack.\n\nhttps://grapheneos.social/@GrapheneOS/111302269839125812",
"sig": "cc4a502a180750dfa4b439808905284301e6d7228baff64fff86b49a25a371bd662932db1f3d18afb8863f8bc764ea00ec23fe7527f61176c84bbcc2909e7bd8"
}