cve/2023/CVE-2023-44216.md
2024-06-18 02:51:15 +02:00

1.2 KiB

CVE-2023-44216

Description

PVRIC (PowerVR Image Compression) on Imagination 2018 and later GPU devices offers software-transparent compression that enables cross-origin pixel-stealing attacks against feTurbulence and feBlend in the SVG Filter specification, aka a GPU.zip issue. For example, attackers can sometimes accurately determine text contained on a web page from one origin if they control a resource from a different origin.

POC

Reference

Github

No PoCs found on GitHub currently.