¡¾Îó²îͨ¸æ¡¿Google Chrome V8¶Ñ»º³åÇøÒç³öÎó²î(CVE-2025-0999)
Ðû²¼Ê±¼ä 2025-02-20Ò»¡¢Îó²î¸ÅÊö
Îó²îÃû³Æ | Google Chrome V8¶Ñ»º³åÇøÒç³öÎó²î | ||
CVE ID | CVE-2025-0999 | ||
Îó²îÀàÐÍ | »º³åÇøÒç³ö | ·¢Ã÷ʱ¼ä | 2025-02-20 |
Îó²îÆÀ·Ö | 8.8 | Îó²îÆ·¼¶ | ¸ßΣ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | ÎÞ |
ʹÓÃÄÑ¶È | µÍ | Óû§½»»¥ | ÐèÒª |
PoC/EXP | δ¹ûÕæ | ÔÚҰʹÓà | δ·¢Ã÷ |
Google Chrome V8ÊÇÒ»¸ö¸ßЧµÄ¿ªÔ´JavaScriptÒýÇæ£¬£¬£¬£¬£¬£¬ÓÃÓÚChromeä¯ÀÀÆ÷ºÍNode.jsµÈƽ̨¡£¡£¡£V8½«JavaScript´úÂë±àÒëΪ»úеÂ룬£¬£¬£¬£¬£¬ÒÔÌá¸ßÖ´ÐÐЧÂÊ£¬£¬£¬£¬£¬£¬ÓÅ»¯ä¯ÀÀÆ÷ÐÔÄÜ¡£¡£¡£ËüÖ§³Ö¼´Ê±±àÒ루JIT£©ºÍÀ¬»ø½ÓÄÉ»úÖÆ£¬£¬£¬£¬£¬£¬Í¨¹ýÄÚ´æÖÎÀíºÍÓÅ»¯Ëã·¨Ìṩ¸üºÃµÄÔËÐÐËÙÂÊ¡£¡£¡£V8ÆÕ±éÓÃÓÚÍøÒ³ºÍÓ¦ÓóÌÐòÖУ¬£¬£¬£¬£¬£¬ÓÈÆäÔÚ´¦Öóͷ£ÖØ´óµÄ¶¯Ì¬ÄÚÈÝʱÌåÏÖÓÅÔ½¡£¡£¡£¸ÃÒýÇæµÄ¸ßЧÐÔÊÇChromeä¯ÀÀÆ÷Á÷ͨÌåÑéµÄÖ÷ÒªÒòËØÖ®Ò»¡£¡£¡£
¶þ¡¢Ó°Ïì¹æÄ£
Èý¡¢Çå¾²²½·¥
3.1 Éý¼¶°æ±¾
ÏÂÔØÁ´½Ó£º
3.2 ÔÝʱ²½·¥
ÔÝÎÞ¡£¡£¡£