By entering this site you need to consent to the use of cookies and their functional use according to this privacy policy. Cookies help us to provide the functional services of the website. Kindly read the below message of use and consent to the use.
The following cookies are stored and shared when accessing this website:
- Internal cookies for the MediaWiki site. This is used for user authentication and article modifications.
- Third-party cookies from Google providing services for Google AdSense and Google Analytics
We will never use data collected outside of the above scope.
| [[IR_Services|IR]]: Stack buffer overflow with custom hardware
+
| Originally IR sysmodule used the read value from the I2C-IR registers TXLVL and RXLVL without validating them at all. See [[10.6.0-31|here]] for the fix. This is the size used for reading the data-recv FIFO, etc. The output buffer for reading is located on the stack.
+
+
This should be exploitable if one could successfully setup the custom hardware for this and if the entire intended sizes actually get read from I2C.
+
| ROP under IR sysmodule.
+
| [[10.6.0-31|10.6.0-31]]
+
|
+
| February 23, 2016 (Unknown if it was noticed before then)
+
| February 23, 2016
+
| [[User:Yellows8|Yellows8]]
|-
|-
| [[NIM_Services|NIM]]: Downloading old title-versions from eShop
| [[NIM_Services|NIM]]: Downloading old title-versions from eShop