mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-26 17:47:58 +02:00
990 B
990 B
CVE-2021-25487
Description
Lack of boundary checking of a buffer in set_skb_priv() of modem interface driver prior to SMR Oct-2021 Release 1 allows OOB read and it results in arbitrary code execution by dereference of invalid function pointer.
POC
Reference
- https://security.samsungmobile.com/securityUpdate.smsb?year=2021&month=10
- https://security.samsungmobile.com/securityUpdate.smsb?year=2021&month=10