placeholder

Remote code execution in Apple's packet-mangler (CVE-2017-13904, CVE-2018-4249)

The packet-mangler component of Apple's macOS operating system kernel contained a remote code execution vulnerability which could be triggered by sending a malicious network packet to the Mac over the internet. This post explains how it we found it using QL.

Click to view the original at lgtm.com