CVE-2017-0785
MEDIUMAndroid 4.4.4-8.0 - Information Disclosure via Bluetooth
Title source: llmExploitation Summary
EIP tracks 15 public exploits for CVE-2017-0785. PoCs published by Kert Ojasoo, ojasookert, Alfa100001.
AI-analyzed exploit summary This exploit targets CVE-2017-0785, a stack information leak vulnerability in Android's Bluetooth stack. It connects to the target via L2CAP and sends crafted packets to leak stack memory contents.
Description
A information disclosure vulnerability in the Android system (bluetooth). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-63146698.
Exploits (15)
This exploit targets CVE-2017-0785, a stack information leak vulnerability in Android's Bluetooth stack. It connects to the target via L2CAP and sends crafted packets to leak stack memory contents.
This repository contains a functional PoC for CVE-2017-0785, an Android Bluetooth information leak vulnerability. The script exploits a flaw in the Bluetooth stack to leak memory contents via crafted L2CAP packets.
The repository contains a functional Python exploit for CVE-2017-0785, a BlueBorne vulnerability affecting Bluetooth implementations. The PoC demonstrates an information leak by crafting malicious L2CAP packets to extract stack data from the target device.
This repository contains a functional PoC exploit for CVE-2017-0785, an information leak vulnerability in Android's Bluetooth stack. The exploit uses crafted L2CAP packets to leak memory contents from the target device.
This repository contains a functional exploit for CVE-2017-0785, part of the BlueBorne vulnerability set, which targets Bluetooth implementations. The exploit includes a scanner to identify vulnerable devices and a PoC that triggers the vulnerability, resulting in a hex dump of leaked memory if successful.
This repository contains a functional Python3 exploit for CVE-2017-0785 (BlueBourne), which targets a Bluetooth stack vulnerability in Linux kernels. The exploit sends crafted L2CAP packets to leak stack memory from the target device.
The repository contains only a minimal README with no functional exploit code or technical details. It appears to be a placeholder without substantive content.
This repository contains a functional Python script that exploits CVE-2017-0785, a Bluetooth SDP protocol vulnerability causing a DoS (crash) on Android devices above version 4.0 by sending malformed packets. The script uses the `bluetooth` and `pwn` libraries to flood the target with crafted packets, triggering an out-of-bounds read and subsequent crash.
This script processes the output of a memory leak exploit for CVE-2017-0785, reversing byte order and cleaning ASCII data from a Bluetooth-based memory dump. It is part of a post-exploitation toolchain for the Blueborne vulnerability.
This PoC exploits CVE-2017-0785, an information leak vulnerability in Android's Bluetooth stack (BlueBorne). It connects to a target device via L2CAP and leaks stack memory by manipulating continuation states in Bluetooth packets.
This repository contains a functional PoC for CVE-2017-0785, an Android Bluetooth information leak vulnerability. The script exploits a stack leak via crafted L2CAP packets to dump memory contents from the target device.
This repository contains a functional Python exploit for CVE-2017-0785, which targets a Bluetooth stack information leak vulnerability in Android devices. The PoC uses L2CAP packets to trigger unintended memory leakage and dumps the leaked content to a file.
This repository contains a functional exploit for CVE-2017-0785, a Bluetooth stack information leak vulnerability in Linux kernels. The PoC uses Python with the PyBluez library to craft L2CAP packets and extract stack memory from a vulnerable target device.
The repository contains a simple file comparison tool (diff.py) and a minimal README, but no actual exploit code or technical details related to CVE-2017-0785. The tool itself is unrelated to the vulnerability.
This PoC exploits CVE-2017-0785, an Android Bluetooth stack information leak vulnerability, by sending crafted L2CAP packets to dump stack memory from a vulnerable device. The script uses pybluez and pwntools to interact with the target Bluetooth device and extract data.
References (5)
Scores
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N