|
|
Flash: uninitialized memory information leak when shading into a ByteArray | ||||
| Reported by cevans@google.com, Apr 3 2015 | Back to list | ||||
A PoC (source and SWF) are attached, along with a screenshot of the rendering of the uninitialized content into a Bitmap. You can "see" the pointers :-) The root cause here seems to be a "zero" mask value in the shader code, which causing nothing to be written, leaving an uninitialized buffer. This bug is subject to a 90 day disclosure deadline. If 90 days elapse without a broadly available patch, then the bug report will automatically become visible to the public.
Comment 1
by
cevans@google.com,
Apr 6 2015
,
May 7 2015
,
May 12 2015
https://helpx.adobe.com/security/products/flash-player/apsb15-09.html
,
Jun 26 2015
|
|||||
| ► Sign in to add a comment | |||||