Get the App
SLTechnology News&Howtos  ›  Network Security  › 

How to turn a double release vulnerability in WhatsApp into a RCE vulnerability

Shulou Source: shulou.com Published: 2022-05-31 20:42:55 10月03日 Update

< LineLen) { /* Decode LineLen items. */ Pixel = Line[i++]; /* Get next pixel from stream. */ if (EGifCompressOutput(Private, CrntCode) == GIF_ERROR) { return GIF_ERROR; } CrntCode = Pixel; /* If however the HashTable if full, we send a clear first and * Clear the hash table. */ if (Private->

RunningCode > = LZ_MAX_CODE) {/ * Time to do some clearance: * / if (EGifCompressOutput (Private, Private- > ClearCode) = = GIF_ERROR) {return GIF_ERROR;} Private- > RunningCode = Private- > EOFCode + 1; Private- > RunningBits = Private- > BitsPerPixel + 1; Private- > MaxCode1 = 1 RunningBits }} / * Preserve the current state of the compression algorithm: * / Private- > CrntCode = CrntCode; if (Private- > PixelCount = = 0) {/ * We are done-output last Code and flush output buffers: * / if (EGifCompressOutput (Private, CrntCode) = = GIF_ERROR) {return GIF_ERROR;} if (EGifCompressOutput (Private, Private- > EOFCode) = = GIF_ERROR) {return GIF_ERROR } if (EGifCompressOutput (Private, FLUSH_OUTPUT) = = GIF_ERROR) {return GIF_ERROR;}} return GIF_OK;} about how to turn double release vulnerabilities in WhatsApp into RCE vulnerabilities. I hope the above can be helpful and learn more. If you think the article is good, you can share it for more people to see.

Tags: File vulnerability picture user code buffer buffer picture library point allocation function address target same multimedia size middleware coding attack location Apple Docker Huawei Linux macOS MariaDB Microsoft MySQL NVidia OPPO Reno Shulou Information MySQL Xiaomi Shulou Tech Info macOS