
Android Binder 버그 CVE-2020-0041용 익스플로잇
이 저장소에는 2019년 12월 Google에 보고한 버그인 CVE-2020-0041을 익스플로잇하는 코드가 포함되어 있으며, 2020년 3월 Android Security Bulletin에서 수정되었습니다.
샌드박스 이스케이프 익스플로잇은 sandbox/에서 확인할 수 있습니다. 버그 분석 및 익스플로잇 접근 방식은 https://labs.bluefrostsecurity.de/blog/2020/03/31/cve-2020-0041-part-1-sandbox-escape/ 에서 확인할 수 있습니다.
마찬가지로 권한 상승 익스플로잇은 lpe/에서 확인할 수 있습니다. 이 부분의 익스플로잇 접근 방식은 https://labs.bluefrostsecurity.de/blog/2020/04/08/cve-2020-0041-part-2-escalating-to-root/ 에서 확인할 수 있습니다.