ID:4447 - Exploit for Resource management error in Google Android - CVE-2011-3918

 
Main Vulnerability Database Exploits ID:4447 - Exploit for Resource management error in Google Android - CVE-2011-3918

ID:4447 - Exploit for Resource management error in Google Android - CVE-2011-3918

Published: August 11, 2020


Vulnerability identifier: #VU43421
Vulnerability risk: Medium
CVE-ID: CVE-2011-3918
CWE-ID: CWE-399
Exploitation vector: Remote access
Vulnerable software:
Google Android

Link to public exploit:


Vulnerability description

The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.

The Zygote process in Android 4.0.3 and earlier accepts fork requests from processes with arbitrary UIDs, which allows remote attackers to cause a denial of service (reboot loop) via a crafted application.


Remediation

Install update from vendor's website.