Pwning Minecraft: 4-Byte Heap Overflow to RCE

We achieved RCE in Minecraft Bedrock, turning a 4-byte heap overflow into complete client compromise. Learn how a universal, Bedrock-specific technique is used to bypass ASLR and achieve arbitrary read/write primitives.

OtterSec
I found a genuine #CompilerBug! I’m so happy! (Well, an #assembler bug, but the principle applies)