Subscribe via feed.

Android IOMXNodeInstance::enableNativeBuffers Unchecked Index

Posted by deepcore on December 4, 2016 – 6:25 am

The code in IOMXNodeInstance.cpp that handles enableNativeBuffers uses port_index without validation, leading to writing the dword value 0 or 1 at an attacker controlled offset from the IOMXNodeInstance structure.


This post is under “exploit” and has no respond so far.
If you enjoy this article, make sure you subscribe to my RSS Feed.

Post a reply

You must be logged in to post a comment.