Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2019-2215

KEV EPSS 50.82% · P98
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2019-2215

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interaction is required to exploit this vulnerability, however exploitation does require either the installation of a malicious local application or a separate vulnerability in a network facing application.Product: AndroidAndroid ID: A-141720095
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Android 资源管理错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Android是美国谷歌(Google)和开放手持设备联盟(简称OHA)的一套以Linux为基础的开源操作系统。 Android中的binder.c文件存在资源管理错误漏洞。攻击者可利用该漏洞提升权限。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Shenlong Deep Dive — AI Deep Analysis

10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.

Affected Products

VendorProductAffected VersionsCPESubscribe
-Android Kernel -

II. Public POCs for CVE-2019-2215

#POC DescriptionSource LinkShenlong Link
1Nonehttps://github.com/timwr/CVE-2019-2215POC Details
2Nonehttps://github.com/raystyle/CVE-2019-2215POC Details
3Temproot for Pixel 2 and Pixel 2 XL via CVE-2019-2215https://github.com/kangtastic/cve-2019-2215POC Details
4CVE 2019-2215 Android Binder Use After Freehttps://github.com/marcinguy/CVE-2019-2215POC Details
5Temproot for Bravia TV via CVE-2019-2215.https://github.com/LIznzn/CVE-2019-2215POC Details
6Android privilege escalation via an use-after-free in binder.chttps://github.com/DimitriFourny/cve-2019-2215POC Details
7android-kernel-exploitation-ashfaq-CVE-2019-2215 docker setup for mac users https://github.com/qre0ct/android-kernel-exploitation-ashfaq-CVE-2019-2215POC Details
8Triggering and Analyzing Android Kernel Vulnerability CVE-2019-2215https://github.com/sharif-dev/AndroidKernelVulnerabilityPOC Details
9PoC for old Binder vulnerability (based on P0 exploit)https://github.com/c3r34lk1ll3r/CVE-2019-2215POC Details
10Temproot for Pixel 2 and Pixel 2 XL via CVE-2019-2215https://github.com/Byte-Master-101/CVE-2019-2215POC Details
11CVE-2019-2215https://github.com/mufidmb38/CVE-2019-2215POC Details
12Android Ransomware Development - AES256 encryption + CVE-2019-2215 (reverse root shell) + Data Exfiltrationhttps://github.com/nicchongwb/Rootsmart-v2.0POC Details
13for kernel 3.18.xhttps://github.com/enceka/cve-2019-2215-3.18POC Details
14Exploit for Bad Binderhttps://github.com/elbiazo/CVE-2019-2215POC Details
15Android Kernel Vulnerability (CVE-2019-2215) temporary root PoChttps://github.com/jsirichai/CVE-2019-2215POC Details
16Exploit for CVE-2019-2215 (bad binder) for Huawei P20 Litehttps://github.com/willboka/CVE-2019-2215-HuaweiP20LitePOC Details
17This is a bad-binder exploit affecting the android binder IPC system that was used in the wild discovered by P0https://github.com/mutur4/CVE-2019-2215POC Details
18Android Ransomware Development - AES256 encryption + CVE-2019-2215 (reverse root shell) + Data Exfiltrationhttps://github.com/CrackerCat/Rootsmart-v2.0POC Details
19CVE 2019-2215 Android Binder Use After Freehttps://github.com/ATorNinja/CVE-2019-2215POC Details
20Nonehttps://github.com/raymontag/CVE-2019-2215POC Details
21Unlock your Huawei device with ADB (CVE-2019-2215)https://github.com/R0rt1z2/huawei-unlockPOC Details
22Android Kernel Vulnerability (CVE-2019-2215) temporary root PoChttps://github.com/stevejubx/CVE-2019-2215POC Details
23Andriod binder bug recordhttps://github.com/XiaozaYa/CVE-2019-2215POC Details
24CVE-2019-2215 poc for Huawei hardened kernelhttps://github.com/llccd/TempRoot-HuaweiPOC Details
25Nonehttps://github.com/0xbinder/android-kernel-exploitation-cve-2019-2215POC Details
26This lab guides you through setting up an environment to explore CVE-2019-2215, a critical Android kernel vulnerability in the binder subsystem.https://github.com/0xbinder/android-kernel-exploitation-labPOC Details
27Nonehttps://github.com/mouseos/cve-2019-2215_SH-M08POC Details
28for kernel 3.18.xhttps://github.com/Enceka/cve-2019-2215-3.18POC Details
29demo CVE-2019-2215 (Bad Binder) for Android Qhttps://github.com/i-redbyte/android-badbinder-demoPOC Details
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2019-2215

登录查看更多情报信息。

Same Patch Batch · n/a · 2019-10-11 · 44 CVEs total

CVE-2019-17059Sophos Cyberoam firewall appliance CyberoamOS 注入漏洞
CVE-2019-14510Kaseya VSA RMM 安全漏洞
CVE-2019-17504Kirona Solutions Dynamic Resource Scheduling 跨站脚本漏洞
CVE-2010-5334IceWarp Webclient 路径遍历漏洞
CVE-2010-5337IceWarp Webclient 跨站脚本漏洞
CVE-2010-5338IceWarp Webclient 跨站脚本漏洞
CVE-2010-5339IceWarp Webclient 跨站脚本漏洞
CVE-2010-5340IceWarp Webclient 跨站脚本漏洞
CVE-2019-17499Compal CH7465LG 操作系统命令注入漏洞
CVE-2010-5336IceWarp Webclient 跨站脚本漏洞
CVE-2019-17503Kirona Solutions Dynamic Resource Scheduling 信息泄露漏洞
CVE-2015-9481WordPress ThemeMakers Diplomat|Political theme 信息泄露漏洞
CVE-2015-9482WordPress ThemeMakers Car Dealer / Auto Dealer Responsive theme 信息泄露漏洞
CVE-2015-9483WordPress ThemeMakers Invento Responsive Gallery/Architecture Template 信息泄露漏洞
CVE-2015-9484WordPress ThemeMakers Accio One Page Parallax Responsive theme 信息泄露漏洞
CVE-2015-9485WordPress ThemeMakers Accio Responsive Parallax One Page Site Template信息泄露漏洞
CVE-2015-9486WordPress ThemeMakers Axioma Premium Responsive theme 信息泄露漏洞
CVE-2015-9487WordPress ThemeMakers Almera Responsive Portfolio theme 信息泄露漏洞
CVE-2015-9488WordPress ThemeMakers Almera Responsive Portfolio Site Template 信息泄露漏洞
CVE-2015-9489WordPress ThemeMakers Goodnex Premium Responsive theme 信息泄露漏洞

Showing top 20 of 44 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2019-2215

No comments yet


Leave a comment