Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gq2m-6mvf-w3pj

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

In ParsePayloadHeader of payload_metadata.cc, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android-9. Android ID: A-113118184.

In ParsePayloadHeader of payload_metadata.cc, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android-9. Android ID: A-113118184.

EPSS

Процентиль: 78%
0.01165
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 9.8
nvd
около 7 лет назад

In ParsePayloadHeader of payload_metadata.cc, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android-9. Android ID: A-113118184.

CVSS3: 9.3
fstec
больше 7 лет назад

Уязвимость функции ParsePayloadHeader операционной системы Android, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 78%
0.01165
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-787