Changes

459 bytes added ,  04:05, 17 June 2022
β†’β€ŽIOS: stumbled into an IOS_CreateMessageQueue hack while checking if another IOS_CreateMessageQueue hack for the wii u works on wii
Line 110: Line 110:  
| December 2007
 
| December 2007
 
| tmbinc
 
| tmbinc
 +
|-
 +
| Kernel
 +
| IOS_CreateMessageQueue does not verify the address {{Anchor|ios-mqaddr}}
 +
| The IOS_CreateMessageQueue syscall does not call the verifyRange function that many syscalls call, despite taking a pointer and causing data to be written to it. Because data can be written there with IOS_SendMessage, this allows for arbitrary writes.
 +
| Arbitrary writes to IOS memory (possibly used in [[HackMii Installer]] 0.7-1.0)
 +
| 4.3
 +
| {{SortableMonth}}
 +
| Unknown
 
|-
 
|-
 
|  ES
 
|  ES
5,579

edits