In binder_vma_close of binder.c, there is a possible use after free due to improper locking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-254837884References: Upstream kernel
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-25096 | In binder_vma_close of binder.c, there is a possible use after free due to improper locking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-254837884References: Upstream kernel |
Ubuntu USN |
USN-5853-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5874-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5875-1 | Linux kernel (GKE) vulnerabilities |
Ubuntu USN |
USN-5909-1 | Linux kernel (Azure CVM) vulnerabilities |
Ubuntu USN |
USN-5918-1 | Linux kernel (BlueField) vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 02 Apr 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: google_android
Published:
Updated: 2025-04-02T14:42:10.278Z
Reserved: 2022-11-03T00:00:00.000Z
Link: CVE-2023-20928
Updated: 2024-08-02T09:21:33.801Z
Status : Modified
Published: 2023-01-26T21:18:11.977
Modified: 2025-04-02T15:15:53.320
Link: CVE-2023-20928
No data.
OpenCVE Enrichment
No data.
EUVD
Ubuntu USN