[binary] i.MX Secure Boot Bypass and a Hancom Office Underflow

Published: Oct. 13, 2022, midnight

Just a couple issues this week and a discussion about why you should look at old vulnerabilities and the pace exploit development advanced at.

\n


\n

Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/158.html

\n


\n

[00:00:00] Introduction

\n

[00:00:26] Spot the Vuln - Authentic Token ... Fixed

\n

[00:05:42] Hancom Office 2020 Hword Docx XML parsing heap underflow vulnerability

\n

[00:11:07] Shining New Light on an Old ROM Vulnerability: Secure Boot Bypass via DCD and CSF Tampering on NXP i.MX Devices

\n

[00:22:21] Discussion: Why Care About Old Vulnerabilities

\n