"The splice() family of calls lets userspace plant a reference to a page-cache page...into the frag slots of a sender-side socket buffer"— Edera
This paper examines a structural trust-verification weakness discovered through static analysis of a legitimately signed Windows Defender executable,
메모리를 너무 작게 잡아놓고, 큰 데이터를 쓴다
안녕하세요, 이전에 잠깐 언급드렸던 아이디어 중 Shallow Copy UAF에 대해서 좀 더 자세히 다뤄보려 합니다. 아직 취약으로 정식 보고가 올라온 사례는 아닙니다. 단순 개인 아이디어로만 생각하고 편히 읽으심 될 것 같습니다. > 리눅스 커널의 BPF 서브시