CVE-2019-2215

HIGH7.8⚠ KEVEPSS 51.5%

Android Kernel Use-After-Free Vulnerability

發布日:2019/10/11修改日:2026/4/28加入 CISA KEV 日:2021/11/3

描述

A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interaction is required to exploit this vulnerability, however exploitation does require either the installation of a malicious local application or a separate vulnerability in a network facing application.Product: AndroidAndroid ID: A-141720095

受影響套件(1)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1HIGH7.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

參考連結(1)