Description
In multiple functions of binder.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3623-1 | linux-5.10 security update |
Debian DSA |
DSA-5480-1 | linux security update |
Ubuntu USN |
USN-6338-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-6338-2 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-6339-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-6339-2 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-6339-3 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-6339-4 | Linux kernel (Intel IoTG) vulnerabilities |
Ubuntu USN |
USN-6340-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-6340-2 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-6344-1 | Linux kernel (Azure) vulnerabilities |
Ubuntu USN |
USN-6349-1 | Linux kernel (Azure) vulnerabilities |
Ubuntu USN |
USN-6350-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-6351-1 | Linux kernel (GKE) vulnerabilities |
Ubuntu USN |
USN-6357-1 | Linux kernel (IBM) vulnerabilities |
Ubuntu USN |
USN-6397-1 | Linux kernel (BlueField) vulnerabilities |
References
History
Thu, 13 Feb 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In multiple functions of binder.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. | In multiple functions of binder.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. |
Status: PUBLISHED
Assigner: google_android
Published:
Updated: 2025-02-13T16:40:10.760Z
Reserved: 2022-11-03T22:37:50.653Z
Link: CVE-2023-21255
No data.
Status : Modified
Published: 2023-07-13T00:15:24.053
Modified: 2025-02-13T17:16:02.643
Link: CVE-2023-21255
No data.
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
Ubuntu USN