Changes

Jump to navigation Jump to search
678 bytes added ,  08:00, 26 March 2015
Line 334: Line 334:  
| March 2015
 
| March 2015
 
| plutoo
 
| plutoo
 +
|-
 +
| [[NFC_Services|NFC]] module service command buf-overflows
 +
| NFC module copies data with certain commands, from command input buffers to stack without checking the size. These commands include the following, it's unknown if there's more commands with similar issues: "nfc:dev" <0x000C....> and "nfc:s" <0x0037....>.
 +
Since both of these commands are stubbed in the Old3DS NFC module from the very first version(those just return an error), these issues only affect the New3DS NFC module.
 +
 +
There's no known retail titles which have access to either of these services.
 +
| ROP under NFC module.
 +
| New3DS: None
 +
| New3DS: [[9.5.0-22]]
 +
| December 2014?
 +
| [[User:Yellows8|Yellows8]]
 
|-
 
|-
 
| [[News_Services|NEWSS]] service command notificationID validation failure
 
| [[News_Services|NEWSS]] service command notificationID validation failure

Navigation menu