0x192 / 0x192/universal-android-debloater
Samsung-TTS privilege-escalation vulnerability
- 主要語言
- Rust
- 星號
- 19.9k
- 分支
- 1.1k
- PR 合併指標
- 30 天內沒有已合併 PR
描述
**Your phone model**: (My phone isn't vulnerable)
**Packages documentation to update:**
```
com.samsung.SMT
```
## Documentation Change
### com.samsung.SMT
**Removal**: `Advanced`
:arrow_right: `Recommended`
### Current description
> Samsung TTS (Text-to-speech)
> Works with applications such as S Voice; translation apps, GPS that require Text-To-Speech (TTS) functionality and reads back text
> https://galaxystore.samsung.com/detail/com.samsung.SMT
### Proposed description
> Samsung TTS (Text-to-speech)
> Works with applications such as S Voice; translation apps, GPS that require Text-To-Speech (TTS) functionality and reads back text
> https://galaxystore.samsung.com/detail/com.samsung.SMT
> WARNING: SOME VERSIONS OF THIS APP ARE VULNERABLE TO PRIVILEGE ESCALATION ATTACK! It can allow arbitrary RCE as system (UID 1000). Identifier: CVE-2019-16253. Source: https://github.com/flankerhqd/vendor-android-cves/tree/master/SMT-CVE-2019-16253
貢獻指南
這個儲存庫沒有索引到貢獻指南
研究方向
該 issue 是關於更新專案套件清單中 com.samsung.SMT 套件的文件。找到儲存套件描述的位置,可能在資料檔案或文件目錄中。查找 com.samsung.SMT 的現有條目,並更新其描述以包含指定的安全警告。透過檢查文件渲染或相關測試來驗證變更。
由索引模型根據 Issue 內容生成。
評估
- 領域
- documentation
- Issue 類型
- 文件
- 難度
- 1/5
- 預估耗時
- 1 小時以內
- 活躍度
- 停滯
- 描述清晰度
- 描述清楚
- 新手友好度
- 80/100