Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-0305

Опубликовано: 17 июл. 2020
Источник: debian
EPSS Низкий

Описание

In cdev_get of char_dev.c, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-153467744

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed5.4.13-1package
linuxfixed4.19.98-1busterpackage
linuxfixed4.9.210-1stretchpackage
linuxfixed3.16.84-1jessiepackage

Примечания

  • https://git.kernel.org/linus/68faa679b8be1a74e6663c21c3a9d25d32f1c079

EPSS

Процентиль: 11%
0.00039
Низкий

Связанные уязвимости

CVSS3: 6.4
ubuntu
почти 5 лет назад

In cdev_get of char_dev.c, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-153467744

CVSS3: 6.4
redhat
почти 5 лет назад

In cdev_get of char_dev.c, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-153467744

CVSS3: 6.4
nvd
почти 5 лет назад

In cdev_get of char_dev.c, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-153467744

CVSS3: 6.4
github
около 3 лет назад

In cdev_get of char_dev.c, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-153467744

CVSS3: 6.4
fstec
около 5 лет назад

Уязвимость функции cdev_get операционной системы Android, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 11%
0.00039
Низкий