"value":"LineageOS 16.0 and earlier is affected by: Incorrect Access Control. The impact is: The property checked by `adb root` can also be set in a normal adb shell session. The component is: adb shell (patches to fix this are at https://review.lineageos.org/c/LineageOS/android_system_core/+/234800, https://review.lineageos.org/c/LineageOS/android_device_lineage_sepolicy/+/234799). The attack vector is: When adb is enabled, and an attacker has physical access, `adb shell setprop service.adb.root 1` allows restarting adb as root."
},
{
"lang":"es",
"value":"LineageOS 16.0 y anteriores se ven afectados por: Control de acceso incorrecto. El impacto es: la propiedad verificada por `adb root` tambi\u00e9n se puede configurar en una sesi\u00f3n normal de adb shell. El componente es: adb shell (los parches para solucionar este problema se encuentran en https://review.lineageos.org/c/LineageOS/android_system_core/+/234800, https://review.lineageos.org/c/LineageOS/android_device_lineage_sepolicy/+ / 234799). El vector de ataque es: cuando adb est\u00e1 habilitado, y un atacante tiene acceso f\u00edsico, `adb shell setprop service.adb.root 1` permite reiniciar adb como root."