From 4e319aa937eeb0c076411ac0fd644225753bcc72 Mon Sep 17 00:00:00 2001 From: Michael Holman Date: Tue, 19 Sep 2017 11:47:54 -0700 Subject: [PATCH] [CVE-2017-11792] Partially initialized data in chakra JIT leads to OOB read/write in RPC - Internal --- lib/JITClient/JITManager.cpp | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/lib/JITClient/JITManager.cpp b/lib/JITClient/JITManager.cpp index 0838d0241b6..98069a6565c 100644 --- a/lib/JITClient/JITManager.cpp +++ b/lib/JITClient/JITManager.cpp @@ -13,7 +13,7 @@ void * __RPC_USER midl_user_allocate( #endif size_t size) { - return (HeapAlloc(GetProcessHeap(), 0, size)); + return (HeapAlloc(GetProcessHeap(), HEAP_ZERO_MEMORY, size)); } void __RPC_USER midl_user_free(_Pre_maybenull_ _Post_invalid_ void * ptr)