woaw

also a good blog post about it https://xint.io/blog/copy-fail-linux-distributions

you are viewing a single comment's thread
view the rest of the comments
[–] 30 points 2 months ago (2 children)

There usually isn't a su binary installed on non-rooted Androids. If you're rooting it yourself anyways, there's no need to use the exploit.

  • source
  • parent
  • hideshow 4 child comments
  • [–] 6 points 2 months ago (1 child)

    While the POC requires su, the underlying flaw potentially works on any setuid binary on systems with AF_ALG enabled (provided there isn't something else preventing it).

  • source
  • parent
  • hideshow 2 child comments
  • [–] 5 points 2 months ago (1 child)

    I'm not as smart as the people who make alternative android options. I was just hoping it would help them jailbreak more of goggle's bullshit so customers actually have a choice to go for an android OS which respects them and their privacy.

  • source
  • parent
  • hideshow 2 child comments
  • [–] [S] 26 points 2 months ago (2 children)

    grapheneOS has already vented on social media that theu are not affected because of how they configured SELinux and that the headline is therefore not correct

    https://grapheneos.social/@GrapheneOS/116491317711428490

  • source
  • parent
  • hideshow 4 child comments
  • [–] 19 points 2 months ago (1 child)

    SELinux breaks a lot of android root exploits, way back in the day even dirty cow didn't work. It would get you "root" but not actually the full perms because of SELinux. Really good testament to the added security of MAC, it's one of the reasons I run apparmor on my systems

  • source
  • parent
  • hideshow 2 child comments