🖥 Get $100 in credits for Digital Ocean 🖥
This video is an explanation of bug bounty report submitted to GitLab by William Bowling. The vulnerability was a remote code execution by a malicious image metadata. The bug existed in exiftool library and was assigned CVE-2021-22204.
Follow me on twitter:
00:54 What is metadata?
02:41 How exiftool handled “
06:16 The exploit