Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2024-0044 PoC — Google Android 安全漏洞

Source
Associated Vulnerability
Title:Google Android 安全漏洞 (CVE-2024-0044)
Description:In createSessionInternal of PackageInstallerService.java, there is a possible run-as any app due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Description
利用CVE-2024-0044 在Android12、13 下提权
Readme
# CVE-2024-0044-EXP
利用CVE-2024-0044 在Android12、13 2024年3月安全更新之前 下数据备份


 ### 用法
./CVE-2024-0044-EXP.sh <package_name> 
 ### sample 
./CVE-2024-0044-EXP.sh com.tencent.mm

# 说明
* 漏洞发现 https://rtx.meta.security/exploitation/2024/03/04/Android-run-as-forgery.html
* 漏洞验证 https://tinyhack.com/2024/06/07/extracting-whatsapp-database-or-any-app-data-from-android-12-13-using-cve-2024-0044/?s=03

File Snapshot

[4.0K] /data/pocs/232ca50249f79a7dd9aec519e68f64e627905411 ├── [1.1K] CVE-2024-0044-EXP.sh └── [ 449] README.md 0 directories, 2 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →