chainfire SuperSU for Android 1.69

CPE Details

chainfire SuperSU for Android 1.69
1.69
2014-03-31
16h42 +00:00
2014-03-31
17h10 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:chainfire:supersu:1.69:*:*:*:*:android:*:*

Informations

Vendor

chainfire

Product

supersu

Version

1.69

Target Software

android

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2013-6774 2014-03-30 08h00 +00:00 Untrusted search path vulnerability in the ChainsDD Superuser package 3.1.3 for Android 4.2.x and earlier, CyanogenMod/ClockWorkMod/Koush Superuser package 1.0.2.1 for Android 4.2.x and earlier, and Chainfire SuperSU package before 1.69 for Android 4.2.x and earlier allows attackers to load an arbitrary .jar file and gain privileges via a crafted BOOTCLASSPATH environment variable for a /system/xbin/su process. NOTE: another researcher was unable to reproduce this with ChainsDD Superuser.
10
CVE-2013-6775 2014-03-30 08h00 +00:00 The Chainfire SuperSU package before 1.69 for Android allows attackers to gain privileges via the (1) backtick or (2) $() type of shell metacharacters in the -c option to /system/xbin/su.
10