Tuesday, August 11, 2020

New vulnerability on the NVD: CVE-2020-0259



In android_verity_ctr of dm-android-verity.c, there is a possible way to modify a dm-verity protected filesystem due to improperly used crypto. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

from Pocket https://ift.tt/2PIYB1h
via IFTTT

No comments:

Post a Comment