FuzzingLabs reported an integer truncation in the TT TVLV unicast handler, flex_array_size() returns a size_t, assigned to a u16, leading to an out-of-bounds read.
Published
Signal category
Research & Knowledge
Quote
“3. An integer truncation in the TT TVLV unicast handler, flex_array_size() returns a size_t, assigned to a u16, leading to an out-of-bounds read.”
— Patrick Ventuzelo|FuzzingLabs team
Company
FuzzingLabs
Fuzzinglabs is a cybersecurity startup specializing in vulnerability research, fuzzing, offensive & blockchain security.
- Industry
- Computer and Network Security
- Location
- Paris, FR
- Company size
- 17 employees
Fuzzinglabs is a cybersecurity startup specializing in vulnerability research, fuzzing, offensive and blockchain security. We offer a wide-range of highly technical consulting services and online courses/trainings around offensive security and fuzzing. We are also building custom security tools and products on-demand.
Founded 2019