TheFlow’s IPV6 Use-After-Free (UAF), which was reported on HackerOne. The exploit strategy is for the most part based on TheFlow’s BSD/PS4 PoC with some changes to accommodate the annoying PS5 memory layout (for more see Research Notes section). It establishes an arbitrary read / (semi-arbitrary) write primitive. This exploit and its capabilities have a lot of limitations, and as such, it’s mostly intended for developers to play with to reverse engineer some parts of the system.
What do you think?
It is nice to know your opinion. Leave a comment.