0x192 / 0x192/universal-android-debloater

Samsung-TTS privilege-escalation vulnerability

未關閉 適合新手
#779 0 則留言 0 個 reaction 已指派 0 人 在 GitHub 檢視
package::documentation
主要語言
Rust
星號
19.9k
分支
1.1k
PR 合併指標
30 天內沒有已合併 PR

描述

**Your phone model**: (My phone isn't vulnerable)

**Packages documentation to update:**

```
com.samsung.SMT
```

## Documentation Change

### com.samsung.SMT

**Removal**: `Advanced`
:arrow_right: `Recommended`

### Current description

> Samsung TTS (Text-to-speech)
> Works with applications such as S Voice; translation apps, GPS that require Text-To-Speech (TTS) functionality and reads back text
> https://galaxystore.samsung.com/detail/com.samsung.SMT

### Proposed description

> Samsung TTS (Text-to-speech)
> Works with applications such as S Voice; translation apps, GPS that require Text-To-Speech (TTS) functionality and reads back text
> https://galaxystore.samsung.com/detail/com.samsung.SMT
> WARNING: SOME VERSIONS OF THIS APP ARE VULNERABLE TO PRIVILEGE ESCALATION ATTACK! It can allow arbitrary RCE as system (UID 1000). Identifier: CVE-2019-16253. Source: https://github.com/flankerhqd/vendor-android-cves/tree/master/SMT-CVE-2019-16253

貢獻指南

這個儲存庫沒有索引到貢獻指南

研究方向

該 issue 是關於更新專案套件清單中 com.samsung.SMT 套件的文件。找到儲存套件描述的位置,可能在資料檔案或文件目錄中。查找 com.samsung.SMT 的現有條目,並更新其描述以包含指定的安全警告。透過檢查文件渲染或相關測試來驗證變更。

由索引模型根據 Issue 內容生成。

評估

領域
documentation
Issue 類型
文件
難度
1/5
預估耗時
1 小時以內
活躍度
停滯
描述清晰度
描述清楚
新手友好度
80/100

把新 issue 寄到你的電子郵件信箱

精選適合新手參與的 GitHub issue 摘要。