Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g4x5-235j-4823

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In beginWrite and beginRead of MessageQueueBase.h, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-11Android ID: A-184963385

In beginWrite and beginRead of MessageQueueBase.h, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-11Android ID: A-184963385

EPSS

Процентиль: 8%
0.0003
Низкий

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 6.7
nvd
больше 4 лет назад

In beginWrite and beginRead of MessageQueueBase.h, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-11Android ID: A-184963385

EPSS

Процентиль: 8%
0.0003
Низкий

Дефекты

CWE-787