CVE-2017-13259
HIGHAndroid 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1 - Out-of-bounds Read in sdp_discovery.cc
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2017-13259. PoCs published by ScottyBauer.
AI-analyzed exploit summary This PoC demonstrates a Bluetooth heap disclosure vulnerability (CVE-2017-13259) by manipulating SDP (Service Discovery Protocol) responses to leak memory contents. It sets up a malicious L2CAP server and advertises a Bluetooth LE device to trigger the vulnerability when a victim device connects.
Description
In functionality implemented in sdp_discovery.cc, there are possible out of bounds reads due to missing bounds checks. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-68161546.
Exploits (1)
This PoC demonstrates a Bluetooth heap disclosure vulnerability (CVE-2017-13259) by manipulating SDP (Service Discovery Protocol) responses to leak memory contents. It sets up a malicious L2CAP server and advertises a Bluetooth LE device to trigger the vulnerability when a victim device connects.
References (2)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N