A TALE OF TWO FIREFOX BUGS

No ratings

Presented at Ruxcon 2012 by

"This talk will discuss 100% reliable exploitation of CVE-2011-2371 (found by Chris Rohlf) by turning it into an infoleak and no heap spraying techniques. There won't be any spamming the address space and relying on the sayonara ROP chain - this will instead go over how exploit writers are supposed to ball to produce quality and reliable exploits. A second, very different, bug will have the same work over as the first. All relevant Firefox internals will be discussed."