Skip to content

sploitem/v8-writeups

Repository files navigation

v8-writeups

Writeups collection for v8 js engine

2024

05

Exploiting V8 at openECSC

03

CVE-2024-2625 Non-allowed main thread handle deref during off-thread parsing in v8

02

Analyzing the Google Chrome V8 CVE-2024-0517 Out-of-Bounds Code Execution Vulnerability

01

Issue 1473631 (Type Confusion in Harmony Set Methods)

Google Chrome V8 CVE-2024-0517 Out-of-Bounds Write Code Execution

The Holy Hole - Analysis of CVE-2023-2033

2023

12

Abusing Liftoff assembly and efficiently escaping from sbx

11

CVE-2023-4427 PoC : Out of bounds memory access in V8

10

Getting RCE in Chrome with incomplete object initialization in the Maglev compiler

09

Getting RCE in Chrome with incorrect side effect in the JIT compiler

CVE-2023-3079 (Bug in the handling of the arguments object)

05

Google Chrome V8 ArrayShift Race Condition Remote Code Execution

2022

12

Deconstructing and Exploiting CVE-2020-6418

TWO BIRDS WITH ONE STONE: AN INTRODUCTION TO V8 AND JIT EXPLOITATION

UNDERSTANDING THE ROOT CAUSE OF CVE-2021-21220 – A CHROME BUG FROM PWN2OWN 2021

EXPLOITATION OF CVE-2021-21220 – FROM INCORRECT JIT BEHAVIOR TO RCE

Exploring Chrome’s CVE-2020-6418 – Part1

06

The Chromium super (inline cache) type confusion

05

Chromium v8 js engine issue 1303458 — Use After Free

Zero Day Vulnerability: Chromium v8 js engine issue 1303458

2021

11

Browser Architecture

08

A Bug's Life: CVE-2021-21225

Exploiting CVE-2021-21225 and disabling W^X

03

Yet another RenderFrameHostImpl UAF

2020

09

Simple bugs with complex exploits

About

Writeups collection for v8 js engine

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published