The get_build_id function in elf_utils.cpp in Debuggerd in Android 6.x before 2016-02-01 allows attackers to gain privileges via a crafted application that mishandles a Desc Size element in an ELF Note, aka internal bug 25187394.
2016-02-07T01:59:06.007
2025-04-12T10:46:40.837
Deferred
CVSSv3.0: 8.4 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | android | 6.0 | Yes | |
| Operating System | android | 6.0.1 | Yes |