Android IOMX getConfig/getParameter Information Disclosure
Posted by deepcore on April 9, 2016 – 10:17 am
The GET_CONFIG and GET_PARAMETER calls on IOMX are vulnerable to an information disclosure of uninitialized heap memory. This could be used by an attacker to break ASLR in the media server process by reading out heap memory which contains useful address information.
Post a reply
You must be logged in to post a comment.