
Full Disclosure mailing list archives
debugfs exploit for a number of Android devices
From: Alexander Pruss <arpruss () gmail com>
Date: Mon, 13 Aug 2012 21:13:18 -0500
I haven't seen a reference to this in the archives, so for the sake of completeness here it is: http://forum.xda-developers.com/showthread.php?t=1790104 Looks like on a number of devices you can symlink the block device that gets mounted on /system to something like /data/local/tmp, and then use debugfs to edit that file system. This allows rooting by the local user, but also all sorts of nastiness by malicious apps that might bundle a copy of debugfs and then change arbitrary files in /system, raise privileges, etc. -- Alex Pruss Omega Centauri Software _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
Current thread:
- debugfs exploit for a number of Android devices Alexander Pruss (Aug 15)