Описание
In memcall_add of memlog.c, there is a possible buffer overflow due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:o:google:android:-:*:*:*:*:*:*:*
EPSS
Процентиль: 14%
0.00047
Низкий
7.8 High
CVSS3
8.4 High
CVSS3
Дефекты
CWE-120
CWE-20
Связанные уязвимости
CVSS3: 8.4
github
больше 1 года назад
In memcall_add of memlog.c, there is a possible buffer overflow due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
EPSS
Процентиль: 14%
0.00047
Низкий
7.8 High
CVSS3
8.4 High
CVSS3
Дефекты
CWE-120
CWE-20