Skip to content

Commit de9bf37

Browse files
committed
CNEXT: part 1
0 parents  commit de9bf37

File tree

3 files changed

+643
-0
lines changed

3 files changed

+643
-0
lines changed

README.md

+17
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,17 @@
1+
# CNEXT exploits
2+
3+
Exploits for CNEXT (CVE-2024-2961), a buffer overflow in the glibc's iconv(), by [@cfreal_](https://twitter.com/cfreal_)
4+
5+
# Technical analysis
6+
7+
The vulnerability and exploits are described in the following blogposts:
8+
9+
- [Iconv, set the charset to RCE: Exploiting the glibc to hack the PHP engine (part 1)](https://www.ambionics.io/blog/iconv-cve-2024-2961-p1)
10+
- To be continued...
11+
12+
# Exploits
13+
14+
Exploits will become available as blogposts come out.
15+
16+
- [CNEXT: file read to RCE exploit](cnext-exploit.py)
17+
- To be continued...

0 commit comments

Comments
 (0)