Exploitation Summary
EIP tracks 1 public exploit for CVE-2021-0392. PoCs published by uthrasri.
AI-analyzed exploit summary This repository contains a functional exploit for CVE-2021-0392, which is a vulnerability in the Android wificond service. The provided code is a modified version of the wificond service that can be used to exploit the vulnerability, likely leading to local privilege escalation.
Description
In main of main.cpp, there is a possible memory corruption due to a double free. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-9Android ID: A-175124730
Exploits (1)
This repository contains a functional exploit for CVE-2021-0392, which is a vulnerability in the Android wificond service. The provided code is a modified version of the wificond service that can be used to exploit the vulnerability, likely leading to local privilege escalation.
References (1)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H