Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7qqc-hw29-jp6r

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.6

Описание

In OxygenOS before 4.0.3 on OnePlus 3 and 3T devices, an unauthorized attacker can cause a locked bootloader to partially dump the ciphertext content of an arbitrary partition (except 'keystore') by issuing the 'fastboot oem dump ' fastboot command.

In OxygenOS before 4.0.3 on OnePlus 3 and 3T devices, an unauthorized attacker can cause a locked bootloader to partially dump the ciphertext content of an arbitrary partition (except 'keystore') by issuing the 'fastboot oem dump ' fastboot command.

EPSS

Процентиль: 24%
0.0008
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 4.6
nvd
почти 9 лет назад

In OxygenOS before 4.0.3 on OnePlus 3 and 3T devices, an unauthorized attacker can cause a locked bootloader to partially dump the ciphertext content of an arbitrary partition (except 'keystore') by issuing the 'fastboot oem dump <partition>' fastboot command.

EPSS

Процентиль: 24%
0.0008
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-476