Quantcast
Channel: Bug Bounty Files ≈ Packet Storm
Viewing all articles
Browse latest Browse all 19

Packet Storm Exploit 2013-0813-1 - Oracle Java IntegerInterleavedRaster.verify() Signed Integer Overflow

$
0
0
The IntegerInterleavedRaster.verify() method in Oracle Java versions prior to 7u25 is vulnerable to a signed integer overflow that allows bypassing of "dataOffsets[0]" boundary checks. This exploit code demonstrates remote code execution by popping calc.exe. It was obtained through the Packet Storm Bug Bounty program.

Viewing all articles
Browse latest Browse all 19

Trending Articles