The tale of a Firefox bug

Presented at Kiwicon 6: The Con of the Beast (2012), Nov. 18, 2012, 11:15 a.m. (30 minutes)

This talk will discuss 100% reliable exploitation of CVE-2011-2371 (found by Chris Rohlf) by turning it into an infoleak and using no heap spraying teqniqz. There won't be any spamming the address space and relying on the sayonara ROP chain - this will instead go over how exploit writers are supposed to ball to produce quality and reliable exploits. All relevant Firefox internals will be discussed. I'll also have a bit of a whinge about Firefox while I have a large group of people in front of me.


Presenters:

  • Thoth
    Thoth loves cottage cheese very much, but dislikes chives.

Links:

Similar Presentations: