Systrace has been reported prone to a vulnerability that may permit an application to completely bypass a Systrace policy. The issue presents itself because Systrace does not perform sufficient sanity checks while handling a process that is being traced with ptrace. This issue is reported to have been silently patched in Systrace version 1.5, previous versions are believed to be prone to this vulnerability.
Systrace has been reported prone to a vulnerability that may permit an application to completely bypass a Systrace policy. The issue presents itself because Systrace does not perform sufficient sanity checks while handling a process that is being traced with ptrace. This issue is reported to have been silently patched in Systrace version 1.5, previous versions are believed to be prone to this vulnerability.