Exploitation Summary
EIP tracks 1 public exploit for CVE-2016-3928. PoCs published by ScottyBauer.
AI-analyzed exploit summary This PoC demonstrates kernel memory corruption in Mediatek Android devices via three ioctl-based exploits targeting framebuffer operations. It attempts to write arbitrary values to kernel memory through MTKFB_GET_DISPLAY_IF_INFORMATION, MTKFB_SLT_AUTO_CAPTURE, and MTKFB_SET_OVERLAY_LAYER ioctls.
Description
The MediaTek video driver in Android before 2016-10-05 allows attackers to gain privileges via a crafted application, aka Android internal bug 30019362 and MediaTek internal bug ALPS02829384.
Exploits (1)
This PoC demonstrates kernel memory corruption in Mediatek Android devices via three ioctl-based exploits targeting framebuffer operations. It attempts to write arbitrary values to kernel memory through MTKFB_GET_DISPLAY_IF_INFORMATION, MTKFB_SLT_AUTO_CAPTURE, and MTKFB_SET_OVERLAY_LAYER ioctls.
References (2)
Scores
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H