Exploitation Summary
EIP tracks 1 public exploit for CVE-2016-3815. PoCs published by ScottyBauer.
AI-analyzed exploit summary This PoC exploits CVE-2016-3815, a vulnerability in the Android kernel's virtual camera device driver. It triggers a buffer overflow via a crafted ioctl call to /dev/camera.pcl, leveraging improper bounds checking in the reg_names field.
Description
The NVIDIA camera driver in Android before 2016-07-05 on Nexus 9 devices allows attackers to obtain sensitive information via a crafted application, aka Android internal bug 28522274.
Exploits (1)
This PoC exploits CVE-2016-3815, a vulnerability in the Android kernel's virtual camera device driver. It triggers a buffer overflow via a crafted ioctl call to /dev/camera.pcl, leveraging improper bounds checking in the reg_names field.
References (2)
Scores
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N