For what is this exploited in the wild when it doesn't include a sandbox escape?
Is this chained with n-days?
Is this chained with n-days?
Those folks would not be disclosing their sandbox escape unless they were good guys.
(Posted with a memory safe WebKit, Fil-C FTW)
In the context of this vulnerability, I doubt memory safety would have made much of a difference.
This is a great reminder though, currently doing a full userspace replacement on my 3D printer and Fil-C might be just what I need for the irreplaceable C parts.
So I think memory safety does matter in that case.
So maybe we're going to see another CVE for the sandbox escape soon?