Switch System Flaws: Difference between revisions
No edit summary |
|||
Line 90: | Line 90: | ||
| qlutoo, Reswitched team (independently) | | qlutoo, Reswitched team (independently) | ||
|- | |- | ||
| Unchecked domain ID in common IPC code | |||
| Prior to [[2.0.0]], object IDs in [[IPC_Marshalling#Domain_message|domain messages]] are not bounds checked. This out-of-bounds read could be exploited to brute-force ASLR and get PC control in some services that support domain messages. | |||
| | |||
| [[2.0.0]] | |||
| | |||
| | |||
| | |||
| | |||
|} | |} |