
CVE-2023-36802 Microsoft Kernel Streaming Service Proxy용 PoC
CVE-2023-36802 Microsoft Kernel Streaming Service Proxy의 타입 혼동(type confusion) 취약점에 대한 PoC입니다.
이 PoC는 Benoît Sevens(@benoitsevens)의 라이트업을 기반으로 제작되었습니다. 해당 문서는 여기에서 확인할 수 있습니다: https://googleprojectzero.github.io/0days-in-the-wild//0day-RCAs/2023/CVE-2023-36802.html
원본 익스플로잇과 라이트업은 Valentina Palmiotti(@chompie1337)가 작성했습니다. https://securityintelligence.com/x-force/critically-close-to-zero-day-exploiting-microsoft-kernel-streaming-service/
참고: 이 PoC는 Windows 11 22H2 22621.1848에서만 테스트되었습니다. PreviousMode 공격은 Insider 빌드에서 완화될 수 있습니다.
