Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-75x9-9cmw-vh37

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In HIDL, safe_union, and other C++ structs/unions being sent to application processes, there are uninitialized fields. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android-8.0 Android-8.1 Android-9. Android ID: A-131356202

In HIDL, safe_union, and other C++ structs/unions being sent to application processes, there are uninitialized fields. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android-8.0 Android-8.1 Android-9. Android ID: A-131356202

EPSS

Процентиль: 2%
0.00015
Низкий

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 5.5
nvd
больше 6 лет назад

In HIDL, safe_union, and other C++ structs/unions being sent to application processes, there are uninitialized fields. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android-8.0 Android-8.1 Android-9. Android ID: A-131356202

EPSS

Процентиль: 2%
0.00015
Низкий

Дефекты

CWE-200