Hacking Mac OS X - Black Hat
Hacking Mac OS X - Black Hat
Hacking Mac OS X - Black Hat
Create successful ePaper yourself
Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.
More pre-release fun<br />
Pwn2Own bug<br />
Contest on March 27, 2008<br />
March 28, 2008 WebKit site:<br />
Regular expressions with large nested repetition counts can have their<br />
compiled length calculated incorrectly.<br />
pcre/pcre_compile.cpp:<br />
(multiplyWithOverflowCheck):<br />
(calculateCompiledPatternLength): Check for overflow when dealing<br />
with nested repetition counts and bail with an error rather than<br />
returning incorrect results.<br />
Patched 3 weeks later