
In the Pixel cellular firmware, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with LTE authentication needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-238914868References: N/A CVE project by @Sn0wAlice
在 Pixel 蜂窝固件中,由于缺少边界检查,存在可能越界写入的问题。这可能导致需要 LTE 认证的远程代码执行。利用无需用户交互。产品:Android 版本:Android kernelAndroid ID:A-238914868参考:无
| 身份认证 | 复杂度 | 向量 |
|---|---|---|
| 不可用 | 不可用 | 不可用 |
| 机密性 | 完整性 | 可用性 |
|---|---|---|
| 不可用 | 不可用 | 不可用 |
此仓库是项目 Live Hack CVE 的一部分。由 Sn0wAlice 制作,面向关注安全并需要获取最新 CVE 反馈的人群。希望你喜欢,别忘了给仓库加星并在 Twitter 和 Github 上关注我。