Google Nexus 9 Unauthorized Access to FIQ Debugger(CVE-2017-0510)

基本字段

漏洞编号:
SSV-92770
披露/发现时间:
未知
提交时间:
2017-03-13
漏洞等级:
漏洞类别:
越权访问
影响组件:
漏洞作者:
Roee Hay & Sagi Kedmi
提交者:
Knownsec
CVE-ID:
CVE-2017-0510
CNNVD-ID:
补充
CNVD-ID:
补充
ZoomEye Dork:
补充

来源

漏洞详情

贡献者 Knownsec 共获得  0KB

Nexus 9 allows unauthorized access to the FIQ debugger via its headphones jack. This allows for sensitive information theft, via malicious headphones, out of any process. Moreover it allows the adversary to reboot the device into HBOOT, which may aid in further exploitation such as accessing internal SoCs via I 2 2C. In addition, the attacker can conduct a Factory Reset.

共 0  兑换了

PoC

暂无 PoC

参考链接

解决方案

临时解决方案

Upgrade to build N4F26T (March 2017 Security patches).

官方解决方案

暂无官方解决方案

防护方案

暂无防护方案

人气 1461
评论前需绑定手机 现在绑定

暂无评论

※本站提供的任何内容、代码与服务仅供学习,请勿用于非法用途,否则后果自负