Editing Vulnerabilities
Jump to navigation
Jump to search
The edit can be undone. Please check the comparison below to verify that this is what you want to do, and then publish the changes below to finish undoing the edit.
Latest revision | Your text | ||
Line 1,057: | Line 1,057: | ||
==== Credits ==== | ==== Credits ==== | ||
* 2021-09-24 m00nbsd for finding the vulnerability | * 2021-09-24 m00nbsd for finding the vulnerability | ||
* 2022-05-11 m00nbsd for disclosing the vulnerability publicly on HackerOne | * 2022-05-11 m00nbsd for disclosing the vulnerability publicly on HackerOne | ||
==== Analysis ==== | ==== Analysis ==== | ||
[https://hackerone.com/reports/1350653 HackerOne report by m00nbsd (2021-09-24)] | |||
==== Bug Description ==== | ==== Bug Description ==== | ||
The PlayStation 4 has a kernel PPPoE driver, that originates from NetBSD. This driver has a kernel heap overflow vulnerability, that an attacker can remotely trigger over the LAN, with the ability to control both the contents that are overflown and their sizes. | The PlayStation 4 has a kernel PPPoE driver, that originates from NetBSD. This driver has a kernel heap overflow vulnerability, that an attacker can remotely trigger over the LAN, with the ability to control both the contents that are overflown and their sizes. | ||
==== Exploit Implementation ==== | ==== Exploit Implementation ==== | ||
* | * None | ||
==== Patched ==== | ==== Patched ==== | ||
'''Yes''' in 9.03 FW according to Specter by diffing | '''Yes''' in 9.03 FW according to Specter by diffing 9.00 and 9.03 kernels | ||
---- | ---- | ||