![]() |
|
Hacking News Researchers Discover Critical Remote Code Execution Flaw in vm2 Sandbox Library - Printable Version +- (https://hackmyride.com/forum) +-- Forum: Automotive Hacking (https://hackmyride.com/forum/forumdisplay.php?fid=211) +--- Forum: News (https://hackmyride.com/forum/forumdisplay.php?fid=278) +---- Forum: The Hacker News (https://hackmyride.com/forum/forumdisplay.php?fid=279) +---- Thread: Hacking News Researchers Discover Critical Remote Code Execution Flaw in vm2 Sandbox Library (/showthread.php?tid=3374) |
Researchers Discover Critical Remote Code Execution Flaw in vm2 Sandbox Library - The Hacker News - 04-08-2023 Researchers Discover Critical Remote Code Execution Flaw in vm2 Sandbox Library The maintainers of the vm2 JavaScript sandbox module have shipped a patch to address a critical flaw that could be abused to break out of security boundaries and execute arbitrary shellcode. The flaw, which affects all versions, including and prior to 3.9.14, was reported by researchers from South Korea-based KAIST WSP Lab on April 6, 2023, prompting vm2 to release a fix with version 3.9.15 on https://thehackernews.com/2023/04/researchers-discover-critical-remote.html |