Skip to content

bjrjk/CVE-2025-5419

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

3 Commits
 
 
 
 
 
 
 
 

Repository files navigation

CVE-2025-5419

An uninitialized read vulnerability by incorrect Turboshaft Store-Store Elimination in V8.

This repository contains analysis and stablized exploit to escalate this vulnerability to achieve in-V8-sandbox Arbitrary Read / Write, AddressOf & FakeObject primitives.

Analysis: CVE-2025-5419.pdf

Reproduce Information

Acknowledgement

References

  1. https://issues.chromium.org/issues/420636529
  2. https://github.com/mistymntncop/CVE-2025-5419/blob/main/exploit.js
  3. https://chromium-review.googlesource.com/c/v8/v8/+/6594051

Disclaimer

This repository is intended solely for educational purposes and must not be used for any malicious activities.

About

An uninitialized read vulnerability by incorrect Turboshaft Store-Store Elimination in V8.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors