CVE-2015-7892
HIGHSamsung m2m1shot_driver - Stack-based Buffer Overflow via ioctl Call
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2015-7892. PoCs published by Google Security Research.
AI-analyzed exploit summary The exploit targets a stack buffer overflow in the Samsung m2m1shot driver's compat ioctl for 32-bit processes. The vulnerability arises from an unchecked attacker-controlled 'num_planes' value, leading to an out-of-bounds write in the 'task.task.buf_out.plane' array.
Description
Stack-based buffer overflow in the m2m1shot_compat_ioctl32 function in the Samsung m2m1shot driver framework, as used in Samsung S6 Edge, allows local users to have unspecified impact via a large data.buf_out.num_planes value in an ioctl call.
Exploits (1)
The exploit targets a stack buffer overflow in the Samsung m2m1shot driver's compat ioctl for 32-bit processes. The vulnerability arises from an unchecked attacker-controlled 'num_planes' value, leading to an out-of-bounds write in the 'task.task.buf_out.plane' array.
References (3)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H