Impact
A race condition in the handle_unmap_req function of the TIPC Virtio driver can corrupt memory, potentially allowing a local user to elevate privileges on the Android device. This vulnerability does not provide a path for remote code execution or require any special execution privileges beyond a local account. The flaw is a classic example of improper synchronization leading to memory corruption, as identified by CWE-362.
Affected Systems
Android devices that include the TIPC Virtio driver in tipc_virtio_dev.c are impacted. The bulletin does not specify a particular Android release, implying that any version containing the driver could be affected.
Risk and Exploitability
The CVSS score of 6.4 denotes moderate severity, while the EPSS score of less than 1% indicates a low probability of exploitation. The vulnerability is not listed in the CISA KEV catalog. Because user interaction is not needed, the attack can be executed by any local user, making the risk significant for devices that run untrusted code or have compromised accounts.
OpenCVE Enrichment