¡¾Îó²îͨ¸æ¡¿Google Chrome V8¶Ñ»º³åÇøÒç³öÎó²î(CVE-2025-0999)
Ðû²¼Ê±¼ä 2025-02-20Ò»¡¢Îó²î¸ÅÊö
Îó²îÃû³Æ | Google Chrome V8¶Ñ»º³åÇøÒç³öÎó²î | ||
CVE ID | CVE-2025-0999 | ||
Îó²îÀàÐÍ | »º³åÇøÒç³ö | ·¢Ã÷ʱ¼ä | 2025-02-20 |
Îó²îÆÀ·Ö | 8.8 | Îó²îÆ·¼¶ | ¸ßΣ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | ÎÞ |
ʹÓÃÄÑ¶È | µÍ | Óû§½»»¥ | ÐèÒª |
PoC/EXP | δ¹ûÕæ | ÔÚҰʹÓà | δ·¢Ã÷ |
Google Chrome V8ÊÇÒ»¸ö¸ßЧµÄ¿ªÔ´JavaScriptÒýÇæ£¬£¬£¬£¬ÓÃÓÚChromeä¯ÀÀÆ÷ºÍNode.jsµÈƽ̨¡£¡£¡£¡£V8½«JavaScript´úÂë±àÒëΪ»úеÂ룬£¬£¬£¬ÒÔÌá¸ßÖ´ÐÐЧÂÊ£¬£¬£¬£¬ÓÅ»¯ä¯ÀÀÆ÷ÐÔÄÜ¡£¡£¡£¡£ËüÖ§³Ö¼´Ê±±àÒ루JIT£©ºÍÀ¬»ø½ÓÄÉ»úÖÆ£¬£¬£¬£¬Í¨¹ýÄÚ´æÖÎÀíºÍÓÅ»¯Ëã·¨Ìṩ¸üºÃµÄÔËÐÐËÙÂÊ¡£¡£¡£¡£V8ÆÕ±éÓÃÓÚÍøÒ³ºÍÓ¦ÓóÌÐòÖУ¬£¬£¬£¬ÓÈÆäÔÚ´¦Öóͷ£ÖØ´óµÄ¶¯Ì¬ÄÚÈÝʱÌåÏÖÓÅÔ½¡£¡£¡£¡£¸ÃÒýÇæµÄ¸ßЧÐÔÊÇChromeä¯ÀÀÆ÷Á÷ͨÌåÑéµÄÖ÷ÒªÒòËØÖ®Ò»¡£¡£¡£¡£
¶þ¡¢Ó°Ïì¹æÄ£
Èý¡¢Çå¾²²½·¥
3.1 Éý¼¶°æ±¾
ÏÂÔØÁ´½Ó£º
3.2 ÔÝʱ²½·¥
ÔÝÎÞ¡£¡£¡£¡£