cve/2023/CVE-2023-48418.md
2024-06-18 02:51:15 +02:00

919 B

CVE-2023-48418

Description

 In checkDebuggingDisallowed of DeviceVersionFragment.java, there is a    possible way to access adb before SUW completion due to an insecure default    value. This could lead to local escalation of privilege with no additional    execution privileges needed. User interaction is not needed for    exploitation

POC

Reference

Github