mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-01 15:11:34 +02:00
20 lines
951 B
Markdown
20 lines
951 B
Markdown
### [CVE-2020-0421](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-0421)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
In appendFormatV of String8.cpp, there is a possible out of bounds write due to incorrect error handling. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-11 Android-8.0Android ID: A-161894517
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
No PoCs from references.
|
|
|
|
#### Github
|
|
- https://github.com/TinyNiko/android_bulletin_notes
|
|
- https://github.com/nanopathi/system_core_AOSP10_r33_CVE-2020-0421
|
|
- https://github.com/nomi-sec/PoC-in-GitHub
|
|
|