Description
In _PMRCreate of the PowerVR kernel driver, a missing bounds check means it is possible to overwrite heap memory via PhysmemNewRamBackedPMR. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-3564 | In _PMRCreate of the PowerVR kernel driver, a missing bounds check means it is possible to overwrite heap memory via PhysmemNewRamBackedPMR. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. |
References
| Link | Providers |
|---|---|
| https://source.android.com/security/bulletin/2023-06-01 |
|
History
Wed, 18 Dec 2024 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-787 | |
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: google_android
Published:
Updated: 2024-12-18T19:00:07.040Z
Reserved: 2020-11-06T00:00:00.000Z
Link: CVE-2021-0945
Updated: 2024-08-03T15:55:18.525Z
Status : Modified
Published: 2023-06-15T19:15:09.217
Modified: 2024-12-18T19:15:08.840
Link: CVE-2021-0945
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD