CVE-2011-1350 Information

Description

The PowerVR SGX driver in Android before 2.3.6 allows attackers to obtain potentially sensitive information from kernel stack memory via an application that uses a crafted length parameter in a request to the pvrsrvkm device.

Reference

http://code.google.com/p/android/issues/detail?id=21522 http://jon.oberheide.org/files/levitator.c

Share on: