CVE-2025-50168 Exploit PoC — Pwn2Own Berlin 2025 - LPE(Windows 11) winning bug.
Author: [D4m0n](https://x.com/d4m0n_8)
# CVE-2025-50168
This is an exploit submitted to **Pwn2Own Berlin 2025 - LPE Category**.
The vulnerability occurs in `Win32kbase!DirectComposition`, and further details can be found in the [blog post](https://www.oobs.io/posts/four-bytes-one-lie).
## Acknowledgements
- **kASLR bypass technique:** [prefetch-tool](https://github.com/exploits-forsale/prefetch-tool) by [carrot_c4k3](https://mastodon.social/@carrot_c4k3)
- **Special thanks to:** David & Louis of [Out of Bounds](https://oobs.io/)
## Disclaimer
This repository is for educational and research purposes only and must not be used for malicious purposes. Use of the materials for unauthorized or illegal activity is strictly prohibited.
登录后查看神龙缓存的 POC 文件快照
登录查看