Public Security Advisories
Coordinated vulnerability disclosures from Argus. Findings, impact, and remediation, published in good faith.
The Android bootmeth read size is taken from the untrusted boot-image header and is not bounded by the partition size, so a crafted image with an oversized header makes the block read overrun the load buffer on devices where Android Verified Boot does not gate the read.
// No embargoed advisories.