CVE-2014-7920
CRITICALAndroid 2.2-5.x - Privilege Escalation in mediaserver
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2014-7920. PoCs published by laginimaineb, Vinc3nt4H.
AI-analyzed exploit summary This repository contains a functional exploit for CVE-2014-7920 and CVE-2014-7921, targeting a code execution vulnerability in the mediaserver component of Android up to version 5.1. The exploit leverages memory manipulation and function pointer overwrites to achieve remote code execution.
Description
mediaserver in Android 2.2 through 5.x before 5.1 allows attackers to gain privileges. NOTE: This is a different vulnerability than CVE-2014-7921.
Exploits (2)
This repository contains a functional exploit for CVE-2014-7920 and CVE-2014-7921, targeting a code execution vulnerability in the mediaserver component of Android up to version 5.1. The exploit leverages memory manipulation and function pointer overwrites to achieve remote code execution.
This repository contains a functional exploit for CVE-2014-7920 and CVE-2014-7921, targeting the mediaserver component in Android versions up to 5.1. The exploit leverages memory corruption to achieve remote code execution by manipulating function pointers and executing arbitrary commands via the 'system' function.
References (2)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H