Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2024-40676 PoC — Google Android 安全漏洞

Source
Associated Vulnerability
Title:Google Android 安全漏洞 (CVE-2024-40676)
Description:In checkKeyIntent of AccountManagerService.java, there is a possible way to bypass intent security check and install an unknown app due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
File Snapshot

[4.0K] /data/pocs/2f7e18bc1c63996918292bfc534f209b103a0e11 ├── [4.1K] AccountAuthenticatorCache.java ├── [ 14K] AccountManagerBackupHelper.java ├── [274K] AccountManagerService.java ├── [3.4K] AccountManagerServiceShellCommand.java ├── [ 61K] AccountsDb.java ├── [4.9K] CryptoHelper.java ├── [2.9K] IAccountAuthenticatorCache.java ├── [ 194] OWNERS └── [7.4K] TokenCache.java 0 directories, 9 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →