Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-2181

Опубликовано: 05 сент. 2019
Источник: debian

Описание

In binder_transaction of binder.c in the Android kernel, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed5.2.6-1package
linuxnot-affectedbusterpackage
linuxnot-affectedstretchpackage
linuxnot-affectedjessiepackage

Примечания

  • Fixed by: https://git.kernel.org/linus/0b0509508beff65c1d50541861bc0d4973487dc5

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 6 лет назад

In binder_transaction of binder.c in the Android kernel, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

CVSS3: 7.8
nvd
больше 6 лет назад

In binder_transaction of binder.c in the Android kernel, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

github
больше 3 лет назад

In binder_transaction of binder.c in the Android kernel, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

CVSS3: 7.8
fstec
больше 6 лет назад

Уязвимость функции binder_transaction (binder.c) ядра операционной системы Android, позволяющая нарушителю повысить свои привилегии