logoalt Hacker News

Twirrimyesterday at 5:33 PM2 repliesview on HN

Given it relies on ASLR being disabled, it's extremely unlikely you're at any risk from this.


Replies

binkyesterday at 9:11 PM

The exploit they chose assumes ASLR is disabled for simplicity's sake, but if you read the full writeup they say they could've used the vulnerability to map memory layout. It's nice to have ASLR but some types of vulnerabilities can be used to bypass it.

Tepixyesterday at 6:29 PM

That‘s wishful thinking