Impact
The vulnerability in fpc_tee_hal.c is caused by a logic error that creates a use‑after‑free condition. A local attacker can free memory that is later accessed or corrupted by malicious code, enabling the attacker to gain elevated privileges without requiring any prior elevated permissions or user interaction. This flaw endangers confidentiality, integrity, and availability by permitting privilege escalation on the device.
Affected Systems
Android devices supplied by Google that incorporate the fpc_tee_hal module within their Trusted Execution Environment subsystem. Any build that includes fpc_tee_hal.c and has not yet received the official security patch is potentially vulnerable.
Risk and Exploitability
The CVSS score of 8.4 classifies this as a high‑severity vulnerability. The EPSS score is less than 1 %, indicating a low probability of exploitation in the wild, and the flaw is not listed in the CISA KEV catalog. The attack vector is purely local, requiring an attacker to run a malicious process on the device; no additional execution privileges or user interaction are needed for exploitation.
OpenCVE Enrichment