Advisory Details

August 2nd, 2018

(Pwn2Own) Google Android UserCallActivity Null Pointer Dereference Denial of Service Vulnerability

ZDI-18-880
ZDI-CAN-5360

CVE ID
CVSS SCORE 4.9, AV:L/AC:L/Au:N/C:N/I:N/A:C
AFFECTED VENDORS Google
AFFECTED PRODUCTS Android
VULNERABILITY DETAILS


This vulnerability allows local attackers to force a reboot on vulnerable installations of Google Android. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

The specific flaw exists within the handling of UserCallActivity. The issue lies in the failure to properly handle a NULL pointer dereference. An attacker can leverage this vulnerability to force the device to reboot.

ADDITIONAL DETAILS


Patched with 2018 JAN SMR


DISCLOSURE TIMELINE
  • 2017-11-01 - Vulnerability reported to vendor
  • 2018-08-02 - Coordinated public release of advisory
  • 2018-08-02 - Advisory Updated
CREDIT MWR Labs - Alex Plaskett
James Loureiro
Robert Miller and Georgi Geshev
BACK TO ADVISORIES