5 min read
Fuzzing dact 0.8.42 with AFL + ASan: a stack buffer overflow in dact_process_file
How a stack buffer overflow was found in the compression utility dact using AFL and AddressSanitizer. Root-cause analysis of a file_extd_urls array overflow triggered by a crafted DACT header.
Read full article