Hacker News
new
past
comments
ask
show
jobs
points
by
ranger_danger
6 hours ago
|
comments
by
Genwald
6 hours ago
|
next
[-]
V8 also has its own sandbox, which I believe exists in that sandbox. I assume that's the one this exploit has RCE in, but its unclear.
https://chromium.googlesource.com/v8/v8.git/+/refs/heads/mai...
reply
by
insanitybit
6 hours ago
|
parent
|
[-]
I would assume in this case that there's full renderer control, not just a bypass of the in-process isolation.
reply
by
r_lee
6 hours ago
|
prev
|
[-]
great link, thanks
reply