In binder_thread_read of binder.c, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-116855682References: Upstream kernel
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: google_android

Published: 2019-06-19T20:07:05

Updated: 2024-08-04T18:35:52.397Z

Reserved: 2018-12-10T00:00:00

Link: CVE-2019-2025

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-06-19T21:15:10.760

Modified: 2024-11-21T04:40:05.393

Link: CVE-2019-2025

cve-icon Redhat

Severity : Low

Publid Date: 2019-03-04T00:00:00Z

Links: CVE-2019-2025 - Bugzilla