Source |
The Hacker News |
Identifiant |
3532163 |
Date de publication |
2021-10-19 08:07:56 (vue: 2021-10-19 16:05:47) |
Titre |
Squirrel Engine Bug Could Let Attackers Hack Games and Cloud Services |
Texte |
Researchers have disclosed an out-of-bounds read vulnerability in the Squirrel programming language that can be abused by attackers to break out of the sandbox restrictions and execute arbitrary code within a SquirrelVM, thus giving a malicious actor complete access to the underlying machine.
Tracked as CVE-2021-41556, the issue occurs when a game library referred to as Squirrel Engine is used |
Notes |
|
Envoyé |
Oui |
Condensat |
2021 41556 abused access actor arbitrary attackers bounds break bug can cloud code complete could cve disclosed engine execute game games giving hack have issue language let library machine malicious occurs out programming read referred researchers restrictions sandbox services squirrel squirrelvm thus tracked underlying used vulnerability when within |
Tags |
Hack
Vulnerability
|
Stories |
|
Move |
|