Description
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interaction is required to exploit this vulnerability, however exploitation does require either the installation of a malicious local application or a separate vulnerability in a network facing application.Product: AndroidAndroid ID: A-141720095
Published: 2019-10-11
Score: 7.8 High
EPSS: 53.5% High
KEV: Yes
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DLA Debian DLA DLA-2068-1 linux security update
Debian DLA Debian DLA DLA-2114-1 linux-4.9 security update
Ubuntu USN Ubuntu USN USN-4186-1 Linux kernel vulnerabilities
History

Wed, 22 Oct 2025 00:15:00 +0000


Tue, 21 Oct 2025 20:30:00 +0000


Tue, 21 Oct 2025 19:30:00 +0000


Tue, 15 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.43001}

epss

{'score': 0.45285}


Sat, 12 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.4241}

epss

{'score': 0.43001}


Fri, 07 Feb 2025 14:15:00 +0000

Type Values Removed Values Added
Metrics kev

{'dateAdded': '2021-11-03'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'active', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 14 Aug 2024 00:30:00 +0000

Type Values Removed Values Added
References

Subscriptions

Canonical Ubuntu Linux
Debian Debian Linux
Google Android
Huawei Alp-al00b Alp-al00b Firmware Alp-tl00b Alp-tl00b Firmware Anne-al00 Anne-al00 Firmware Ares-al00b Ares-al00b Firmware Ares-al10d Ares-al10d Firmware Ares-tl00chw Ares-tl00chw Firmware Barca-al00 Barca-al00 Firmware Berkeley-l09 Berkeley-l09 Firmware Berkeley-tl10 Berkeley-tl10 Firmware Bla-al00b Bla-al00b Firmware Bla-l29c Bla-l29c Firmware Bla-tl00b Bla-tl00b Firmware Columbia-al00a Columbia-al00a Firmware Columbia-l29d Columbia-l29d Firmware Cornell-tl10b Cornell-tl10b Firmware Duke-l09i Duke-l09i Firmware Dura-al00a Dura-al00a Firmware Figo-al00a Figo-al00a Firmware Florida-al20b Florida-al20b Firmware Florida-l03 Florida-l03 Firmware Florida-l21 Florida-l21 Firmware Florida-l22 Florida-l22 Firmware Florida-tl10b Florida-tl10b Firmware Honor 9i Honor 9i Firmware Honor View 20 Honor View 20 Firmware Jakarta-al00a Jakarta-al00a Firmware Johnson-tl00d Johnson-tl00d Firmware Leland-al10b Leland-al10b Firmware Leland-l21a Leland-l21a Firmware Leland-l32a Leland-l32a Firmware Leland-tl10b Leland-tl10b Firmware Leland-tl10c Leland-tl10c Firmware Lelandp-al00c Lelandp-al00c Firmware Lelandp-l22c Lelandp-l22c Firmware Mate Rs Mate Rs Firmware Neo-al00d Neo-al00d Firmware Nova 2s Nova 2s Firmware Nova 3 Nova 3 Firmware Nova 3e Nova 3e Firmware P20 P20 Firmware P20 Lite P20 Lite Firmware Princeton-al10b Princeton-al10b Firmware Rhone-al00 Rhone-al00 Firmware Stanford-l09 Stanford-l09 Firmware Stanford-l09s Stanford-l09s Firmware Sydney-al00 Sydney-al00 Firmware Sydney-tl00 Sydney-tl00 Firmware Sydneym-al00 Sydneym-al00 Firmware Tony-al00b Tony-al00b Firmware Tony-tl00b Tony-tl00b Firmware Y9 2019 Y9 2019 Firmware Yale-al00a Yale-al00a Firmware Yale-l21a Yale-l21a Firmware Yale-tl00b Yale-tl00b Firmware
Netapp A220 A220 Firmware A320 A320 Firmware A800 A800 Firmware Aff Baseboard Management Controller Aff Baseboard Management Controller Firmware C190 C190 Firmware Cloud Backup Data Availability Services Fas2720 Fas2720 Firmware Fas2750 Fas2750 Firmware H300s H300s Firmware H410c H410c Firmware H410s H410s Firmware H500s H500s Firmware H610s H610s Firmware H700s H700s Firmware Hci Management Node Service Processor Solidfire Solidfire Baseboard Management Controller Solidfire Baseboard Management Controller Firmware Steelstore Cloud Integrated Storage
cve-icon MITRE

Status: PUBLISHED

Assigner: google_android

Published:

Updated: 2025-10-21T23:45:29.242Z

Reserved: 2018-12-10T00:00:00.000Z

Link: CVE-2019-2215

cve-icon Vulnrichment

Updated: 2024-08-04T18:42:50.933Z

cve-icon NVD

Status : Analyzed

Published: 2019-10-11T19:15:10.947

Modified: 2025-10-24T14:11:31.703

Link: CVE-2019-2215

cve-icon Redhat

Severity : Moderate

Publid Date: 2019-10-16T00:00:00Z

Links: CVE-2019-2215 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses