Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-47ff-36m4-3jcf

Опубликовано: 21 дек. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.7

Описание

In RadioImpl::setGsmBroadcastConfig of ril_service_legacy.cpp, there is a possible stack clash leading to memory corruption. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-243509749References: N/A

In RadioImpl::setGsmBroadcastConfig of ril_service_legacy.cpp, there is a possible stack clash leading to memory corruption. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-243509749References: N/A

EPSS

Процентиль: 3%
0.00016
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 6.7
nvd
около 3 лет назад

In RadioImpl::setGsmBroadcastConfig of ril_service_legacy.cpp, there is a possible stack clash leading to memory corruption. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-243509749References: N/A

EPSS

Процентиль: 3%
0.00016
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-787