- cross-posted to:
- linux@lemmy.ml
- linux@lemmy.ml
- cross-posted to:
- linux@lemmy.ml
- linux@lemmy.ml
woaw
also a good blog post about it https://xint.io/blog/copy-fail-linux-distributions
woaw
also a good blog post about it https://xint.io/blog/copy-fail-linux-distributions
While the POC requires
su, the underlying flaw potentially works on any setuid binary on systems withAF_ALGenabled (provided there isn’t something else preventing it).In android this would very likely be the “mount” command, as if it has a microsd card reader or the ability to use a USB data transfer I expect it’s using mount in order to do so.