Hacking New Arbitrary R/W WebKit Writeup

https://phoenhex.re/2017-05-04/pwn2own17-cachedcall-uaf

This vulnerability was present in WebKit version 602.4.8 (according to https://en.wikipedia.org/wiki/Safari_version_history) and the Nintendo Switch is on WebKit Version 601.6 (according to http://switchbrew.org/index.php?title=Internet_Browser).

NO this is NOT enough to reach Switch homebrew, but a good read nonetheless if you're interested in security research.
Nintendo cherry picks security fixes, so even though the version of webkit on the switch may be old, they have included fixes from more recent versions as well. You will have to try it to see if the switch is actually vulnerable to this.
 
  • Like
Reactions: RednaxelaNnamtra

Site & Scene News

Popular threads in this forum