Back to search
CVE-2019-2023
Published: Jun 19, 2019
Modified: Aug 4, 2024
PUBLISHED
Description
In ServiceManager::add function in the hardware service manager, there is an insecure permissions check based on the PID of the caller. This could allow an app to add or replace a HAL service with its own service, gaining code execution in a privileged process.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9Android ID: A-121035042Upstream kernel
| Vendor | Product | Versions |
|---|---|---|
n/a | Android | affected Android-8.0 Android-8.1 Android-9 |
References
https://source.android.com/security/bulletin/2019-03-01
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now