Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Widevine Trusted Application in Android 6.0.1 before 2016-03-01 allows attackers to obtain sensitive TrustZone secure-storage information by leveraging kernel access, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 20860039.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Android Widevine Trusted Application 安全漏洞
Vulnerability Description
Android是美国谷歌(Google)公司和开放手持设备联盟(简称OHA)共同开发的一套以Linux为基础的开源操作系统。Widevine Trusted Application是其中的一个用于Google DRM平台验证的组件。 Android 2016-03-01之前6.0.1版本的Widevine Trusted Application中存在安全漏洞。攻击者可借助内核访问权限利用该漏洞获取敏感的TrustZone secure-storage信息。
CVSS Information
N/A
Vulnerability Type
N/A