Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-45mp-7qc4-gj8v

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In multiple functions of libl3oemcrypto.cpp, there is a possible weakness in the existing obfuscation mechanism due to the way sensitive data is handled. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-190724551

In multiple functions of libl3oemcrypto.cpp, there is a possible weakness in the existing obfuscation mechanism due to the way sensitive data is handled. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-190724551

EPSS

Процентиль: 2%
0.00015
Низкий

Дефекты

CWE-922

Связанные уязвимости

CVSS3: 5.5
nvd
больше 4 лет назад

In multiple functions of libl3oemcrypto.cpp, there is a possible weakness in the existing obfuscation mechanism due to the way sensitive data is handled. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-190724551

EPSS

Процентиль: 2%
0.00015
Низкий

Дефекты

CWE-922