Jann Horn (Project Zero)
9 exploits
Active since May 2016
Xen 4.4.x-4.8.x - Improper Validation of Array Index in XENMEM_exchange
CVSS 8.2
Linux kernel <4.6.3 - Privilege Escalation
CVSS 7.8
Linux Kernel (Ubuntu 14.04.3) - 'perf_event_open()' Can Race with execve() (Access /etc/shadow)
Xen 64bit PV Guest - pagetable use-after-type-change Breakout
Linux SELinux - W+X Protection Bypass via AIO
Linux Kernel < 4.5.5 - Use-After-Free in BPF Subsystem
CVSS 7.0
Android 8.0-9 - Insecure Permission Assignment in ServiceManager::add
CVSS 7.8
Google Android - Insufficient Binder Message Verification Pointer Leak
Google Android - getpidcon Usage binder Service Replacement Race Condition