← Back to context

Comment by skupig

2 days ago

You would also need some sort of ASLR leak to make this exploitable

Speaking from firsthand experience: codec and other media processing libraries are some of the easiest software to find address leaks in.

(There are a number of reasons for this, not least being that C makes it very easy to ship partially initialized memory over the wire.)