In get_futex_key of futex.c, there is a use-after-free due to improper locking. This could lead to local escalation of privilege with no additional privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android kernel Android ID: A-74250718 References: Upstream kernel.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: google_android
Published: 2018-11-06T17:00:00Z
Updated: 2024-09-16T18:24:27.587Z
Reserved: 2018-04-05T00:00:00
Link: CVE-2018-9422
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-11-06T17:29:00.723
Modified: 2019-08-19T20:15:10.567
Link: CVE-2018-9422
Redhat