Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2025-21479 PoC — Incorrect Authorization in Graphics

Source
Associated Vulnerability
Title:Incorrect Authorization in Graphics (CVE-2025-21479)
Description:Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.
Description
A proof-of-concept for CVE-2025-21479, chained with a Dirty Pagetable technique.
Readme
FIX ISSUES :- 
1. adapt shellcode to disable seccomp
2. adapt to samsung device maybe seprate branch add func of finding kernel base using gpu
3. change README

🤝 Contributing
Pull Requests (PRs) are welcome and greatly appreciated!
Whether it's fixes, improvements, refactoring, or new device support — feel free to contribute.

🚧 Project Status
This project is still Work In Progress (WIP).

I will also be adding:
This includes:
- Researchers whose exploits or techniques inspired parts of the implementation
- Developers whose code was adapted, referenced, or modified
- Community members providing offsets, patches, or device-specific data
- Any open-source projects that contributed ideas or code segments

# DEMONSTRATION
[2025-11-16 15-38-43.webm](https://github.com/user-attachments/assets/a8bcaa8f-1818-48ad-a5f4-e49aef32de77)


## 📚 References
- https://github.com/zhuowei/cheese  
- https://xploitbengineer.github.io/CVE-2025-21479  
- https://dawnslab.jd.com/android_gpu_attack_cve_2025_21479/#more 
File Snapshot

[4.0K] /data/pocs/830c49a97f1072df16a33331bc4d7e4beb579f73 ├── [4.4K] adrenaline.h ├── [ 65K] exploit.c ├── [4.0K] helpers │   ├── [3.2K] analyze.c │   └── [ 12K] extract-kallsyms.c ├── [ 11K] kallsyms_lookup.c └── [1.0K] README.md 2 directories, 6 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →