Hmm, my favorite vulnerability is x86's lack of self-synchronization meaning that the same byte-stream could be two different streams of valid instructions depending on where you start reading.
http://mainisusuallyafunction.blogspot.com/2012/11/attacking...
replies(1):