CVE-2017-0531
MEDIUMLinux Kernel 3.10-3.18 - Information Disclosure via Qualcomm Wi-Fi Driver
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2017-0531. PoCs published by derrekr.
AI-analyzed exploit summary This PoC exploits CVE-2017-0531, a vulnerability in the Qualcomm MSM LSM (Linux Security Module) driver, by sending a malformed ioctl command to trigger a denial-of-service (DoS) condition, causing the device to reboot. The code opens a sound device and issues an ioctl with a crafted value (0x0B01ABADACCE55) to exploit the vulnerability.
Description
An information disclosure vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32877245. References: QC-CR#1087469.
Exploits (1)
This PoC exploits CVE-2017-0531, a vulnerability in the Qualcomm MSM LSM (Linux Security Module) driver, by sending a malformed ioctl command to trigger a denial-of-service (DoS) condition, causing the device to reboot. The code opens a sound device and issues an ioctl with a crafted value (0x0B01ABADACCE55) to exploit the vulnerability.
References (5)
Scores
CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N