In unix_scm_to_skb of af_unix.c, there is a possible use after free bug due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-196926917References: Upstream kernel
History

Fri, 04 Apr 2025 18:15:00 +0000

Type Values Removed Values Added
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:google:android:*:*:*:*:*:*:*:* cpe:2.3:o:google:android:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:5.14:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:5.14:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:5.14:rc3:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel

Tue, 04 Feb 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics kev

{'dateAdded': '2022-05-23'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'active', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 14 Aug 2024 00:45:00 +0000

Type Values Removed Values Added
References

cve-icon MITRE

Status: PUBLISHED

Assigner: google_android

Published: 2021-12-15T18:05:31.000Z

Updated: 2025-02-04T19:04:20.727Z

Reserved: 2020-11-06T00:00:00.000Z

Link: CVE-2021-0920

cve-icon Vulnrichment

Updated: 2024-08-03T15:55:16.898Z

cve-icon NVD

Status : Analyzed

Published: 2021-12-15T19:15:11.017

Modified: 2025-04-04T17:34:25.457

Link: CVE-2021-0920

cve-icon Redhat

Severity : Important

Publid Date: 2021-07-28T00:00:00Z

Links: CVE-2021-0920 - Bugzilla