Tamir Zahavi-Brunner

4 exploits Active since Apr 2018
CVE-2021-1961 NOMISEC MEDIUM WORKING POC
Qualcomm Apq8009 Firmware - Buffer Overflow
Possible buffer overflow due to lack of offset length check while updating the buffer value in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
121 stars
CVSS 6.7
CVE-2018-9411 NOMISEC HIGH WORKING POC
Google Android - Out-of-Bounds Write
In decrypt of ClearKeyCasPlugin.cpp there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote arbitrary code execution with no additional execution privileges needed. User interaction is needed for exploitation.
52 stars
CVSS 8.8
CVE-2018-9539 NOMISEC HIGH WORKING POC
Google Android - Race Condition
In the ClearKey CAS descrambler, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android-8.0 Android-8.1 Android-9. Android ID: A-113027383
20 stars
CVSS 7.0
CVE-2017-13253 EXPLOITDB HIGH c++ WORKING POC
Google Android - Out-of-Bounds Write
In CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android. Versions: 8.0, 8.1. Android ID: A-71389378.
CVSS 7.8