Lorenzo Ori
@scafroglia93
ID: 60588028
27-07-2009 12:52:23
124 Tweet
1,1K Takipçi
1,1K Takip Edilen
"#Xiaomi URL spoofing w/ SSL vulnerability or, CVE-2019-10875 - Was it intentionally kept in the global versions by Xiaomi?" andmp.com/2019/04/xiaomi… cc: CERT-EU Gianni Amato CertPa Corrado Giustozzi 🇮🇹🇪🇺 Lorenzo Ori Pierluigi Paganini - Security Affairs Marco Ramilli
"There is a use-after-free #UAF of the wait member in the binder_thread struct in the binder driver at /drivers/android/binder.c. " used in the wild and attributed to the #NSO group". H/T Baptiste Robert #Android. Check "device appear to be vulnerable" #Xiaomi bugs.chromium.org/p/project-zero…