
S4E 팀이 보고한 Google Chrome 사용 후 해제(Use After Free) 취약점
S4E 팀이 보고한 Google Chrome Use After Free 취약점
총 버그 바운티 보상금: $6.000
다음에 대한 개념 증명(PoC)입니다:
Google 블로그 게시물:
https://chromereleases.googleblog.com/2021/07/stable-channel-update-for-desktop_20.html
요구 사항: 없음, 구버전의 Google Chrome [91.0.4472.77] + [stable] (정식 빌드) (64-bit)에서 HTML 파일을 실행하기만 하면 됩니다.
poc-exploit.html (이 버그는 Google Chrome 91 이하에서 동작합니다. 92+에서 패치되었습니다.)
언급된 버그는 "Security For Everyone 팀이 보고"했습니다.