Jump to content

[mini] Microsoft hacks ChromeOS with Audio

rcmaehl

Summary

A buffer overflow in ChromeOS's audio handling would have allowed Remote Code Execution on ChromeOS

 

Quotes

Quote

Google has... made it a sport to point out security issues with Windows as it purports to protect its Chrome users..., but a... bug found by Microsoft put the onus back on Google to patch ChromeOS. Microsoft is firing back with a find of its own with the platform misusing strcpy(). ChromeOS cras D-Bus SetPlayerIdentity causes memory corruption. "We discovered the vulnerability could be remotely triggered by manipulating audio metadata. Attackers could have lured users into meeting these conditions, such as by simply playing a new song in a browser or from a paired Bluetooth device" Microsoft tagged it with CVE-2022-2587... with a CVSS score of 9.8 out of 10. Fortunately, this was all done back in April 2022 and has since been patched by Google and its ChromeOS team. In roughly a week.

 

My thoughts

Ah yes, I can see it now. People running one of the 115 Chromebooks models no longer getting updates being pwn'd by a malicious youtube video or web ad. Just playing a video and then all of a sudden your printer starts spitting out a billion copies of an entirely ink soaked black page.

 

Sources

OnMSFT (quote source)

The Register

ChromeOS Bug Report

PLEASE QUOTE ME IF YOU ARE REPLYING TO ME

Desktop Build: Ryzen 7 2700X @ 4.0GHz, AsRock Fatal1ty X370 Professional Gaming, 48GB Corsair DDR4 @ 3000MHz, RX5700 XT 8GB Sapphire Nitro+, Benq XL2730 1440p 144Hz FS

Retro Build: Intel Pentium III @ 500 MHz, Dell Optiplex G1 Full AT Tower, 768MB SDRAM @ 133MHz, Integrated Graphics, Generic 1024x768 60Hz Monitor


 

Link to comment
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×