Liang Ming

4 exploits Active since Oct 2018
CVE-2018-11019 WRITEUP HIGH WORKING POC
Amazon Kindle Fire HD(3rd) Fire OS 4.5.5.3 - Code Injection
kernel/omap/drivers/misc/gcx/gcioctl/gcif.c in the kernel component in Amazon Kindle Fire HD(3rd) Fire OS 4.5.5.3 allows attackers to inject a crafted argument via the argument of an ioctl on device /dev/gcioctl with the command 3221773726 and cause a kernel crash.
CVSS 7.5
CVE-2018-11023 WRITEUP HIGH WORKING POC
Amazon Kindle Fire HD (3rd) Fire OS 4.5.5.3 - Code Injection
kernel/omap/drivers/misc/gcx/gcioctl/gcif.c in the kernel component in Amazon Kindle Fire HD (3rd) Fire OS 4.5.5.3 allows attackers to inject a crafted argument via the argument of an ioctl on device /dev/gcioctl with the command 3222560159 and cause a kernel crash.
CVSS 7.5
CVE-2018-11024 WRITEUP HIGH WRITEUP
Amazon Kindle Fire HD (3rd) Fire OS 4.5.5.3 - Code Injection
kernel/omap/drivers/misc/gcx/gcioctl/gcif.c in the kernel component in Amazon Kindle Fire HD (3rd) Fire OS 4.5.5.3 allows attackers to inject a crafted argument via the argument of an ioctl on device /dev/gcioctl with the command 1077435789 and cause a kernel crash.
CVSS 7.5
CVE-2018-18318 WRITEUP HIGH WORKING POC
Qiku 360 Mobile Phone N6 Pro Firmware - NULL Pointer Dereference
The /dev/block/mmcblk0rpmb driver kernel module on Qiku 360 Phone N6 Pro 1801-A01 devices allows attackers to cause a denial of service (NULL pointer dereference and device crash) via a crafted 0xc0d8b300 ioctl call.
CVSS 7.5