Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Chainfire SuperSU package before 1.69 for Android allows attackers to gain privileges via the (1) backtick or (2) $() type of shell metacharacters in the -c option to /system/xbin/su.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Chainfire SuperSU 权限许可和访问控制漏洞
Vulnerability Description
Chainfire SuperSU是一套用于Android平台中的超级用户授权工具。该工具通过授予应用程序root权限,可掌握手机的控制权。 Android 4.2.x及之前版本的Chainfire SuperSU程序包1.69版本中存在安全漏洞。攻击者可借助/system/xbin/su进程的-c选项中shell元字符利用该漏洞获取特权。
CVSS Information
N/A
Vulnerability Type
N/A