EIP-2026-100025
PRE-CVEGoogle Android - 'IOMXNodeInstance::enableNativeBuffers' Unchecked Index
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-100025. PoCs published by Google Security Research.
AI-analyzed exploit summary The exploit demonstrates an out-of-bounds write vulnerability in IOMXNodeInstance.cpp, where unvalidated port_index allows writing attacker-controlled values to arbitrary offsets in the IOMXNodeInstance structure. The PoC triggers a crash in the mediaserver process by sending a crafted binder transaction.
Description
Google Android - 'IOMXNodeInstance::enableNativeBuffers' Unchecked Index
Exploits (1)
The exploit demonstrates an out-of-bounds write vulnerability in IOMXNodeInstance.cpp, where unvalidated port_index allows writing attacker-controlled values to arbitrary offsets in the IOMXNodeInstance structure. The PoC triggers a crash in the mediaserver process by sending a crafted binder transaction.