Exploitation Summary
EIP tracks 1 public exploit for CVE-2016-8413. PoCs published by derrekr.
AI-analyzed exploit summary This PoC demonstrates an information leak vulnerability in the Qualcomm MSM camera driver by triggering an ioctl call that leaks kernel memory contents. The exploit opens a video device and issues a crafted ioctl request to expose kernel data, which can be observed via dmesg.
Description
An information disclosure vulnerability in the Qualcomm camera driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32709702. References: QC-CR#518731.
Exploits (1)
This PoC demonstrates an information leak vulnerability in the Qualcomm MSM camera driver by triggering an ioctl call that leaks kernel memory contents. The exploit opens a video device and issues a crafted ioctl request to expose kernel data, which can be observed via dmesg.
References (5)
Scores
CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N