Full Disclosure mailing list archives

Chrome heap buffer overflow in freetype2 CVE-2020-15999


From: Marcin Kozlowski <marcinguy () gmail com>
Date: Thu, 29 Oct 2020 09:49:02 +0100

Hi list,

Debugged this issue, but somehow cannot trigger the crash in Chrome.

Seems like the font is loaded without correct flags or it was different
font I saw in debugger :)

Anybody had sucess witht this bug? Feel free to reply here or DM.

My notes:

https://github.com/marcinguy/CVE-2020-15999

Thanks,

_______________________________________________
Sent through the Full Disclosure mailing list
https://nmap.org/mailman/listinfo/fulldisclosure
Web Archives & RSS: http://seclists.org/fulldisclosure/


Current thread: