CVE Database
/

CVE-2019-2023

Back to search

CVE-2019-2023

Published: Jun 19, 2019

Modified: Aug 4, 2024

PUBLISHED

Description

In ServiceManager::add function in the hardware service manager, there is an insecure permissions check based on the PID of the caller. This could allow an app to add or replace a HAL service with its own service, gaining code execution in a privileged process.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9Android ID: A-121035042Upstream kernel

VendorProductVersions

n/a

Android

affected
Android-8.0 Android-8.1 Android-9

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now