中文

智能卡系统服务上下文中的任意代码执行

密码学与安全 2016-01-25 v1

摘要

本报告总结了关于部署在若干 Android 设备上的 Open Mobile API 实现中存在严重弱点的发现。该漏洞允许来自特制 Android 应用程序包 (APK) 的任意代码被注入并由智能卡系统服务组件(Open Mobile API 实现的中间件组件)执行。这可被利用来获取提升的能力,例如由分配给该服务的签名级和系统级权限所保护的特权。受影响的源代码似乎源自 SEEK-for-Android 开源项目,并被各种厂商特定的 Open Mobile API 实现所采用,包括 Nexus 6(截至 Android 版本 5.1)上使用的实现。

关键词

引用

@article{arxiv.1601.05833,
  title  = {Executing Arbitrary Code in the Context of the Smartcard System Service},
  author = {Michael Roland},
  journal= {arXiv preprint arXiv:1601.05833},
  year   = {2016}
}

备注

University of Applied Sciences Upper Austria, JR-Center u'smile, Vulnerability report, associated CVE identifier is CVE-2015-6606, 28 pages, 6 figures