以åå°ã話é¡ã«ãªã£ãLaravelã®ãããã°ã¢ã¼ãæå¹æã®èå¼±æ§ã§ããCVE-2021-3129ã®PoCãèªãã§ããã®ã§ãããæã£ãããé£ããã¦ä½ã§ãããªãã¨ããã¦ãããã ããã¨æã£ããçºè¦è ã«ãã解説ããã°ãããã¾ãããèªãã§ã¿ãããã¤ãã¹ã®ããã«æã£ãããè²ã ãã¦ãã¦æ®éã«åå¼·ã«ãªã£ãã®ã§ã¡ã¢ãæ®ãã¦ããã¾ããCTFerããããã¨å¸¸èãªå 容ãããããªãã®ã§ãä½ãééããè£è¶³ãããã°ææããé¡ããã¾ãã www.ambionics.io åæç¥è1 åæç¥è2 æ¬é¡ åé¡ç¹ = ã«ããã¨ã©ã¼ æ¥ä»ã®ãã³ã¼ã ãã°ãã¡ã¤ã«å ã®ä»ã¨ã³ã㪠ãã¤ãã¹æ¹æ³ consumedã®å©ç¨ iconvã®å©ç¨ ããã£ã³ã°ã®å©ç¨ UTF-16ã®ããã®èª¿æ´ NULLãã¤ãã®åé¿ æçµå½¢ ã¾ã¨ã åæç¥è1 ä¸ã®èå¼±æ§ãç解ããããã«ã¯ããã¤ãã®åæç¥èãå¿ è¦ã¨ããããæåã«ã¾ã¨ãã¦ããã¾ãã ã¾ããPHPã§ã¯å¤
{{#tags}}- {{label}}
{{/tags}}