Impact
A logic error in smmu_install_nested_ste of arm‑smmu‑v3.c allows a local attacker to obtain system execution privileges. The flaw can be triggered by executing code that interacts with the driver, and no user interaction is required. Because the vulnerability is classified as CWE‑693, it highlights insufficient safeguards against privilege escalation.
Affected Systems
The flaw affects Android devices that utilize the Google ARM SMMU v3 driver. The vendor is Google:Android and no specific version ranges are enumerated, so devices running any recent Android release that includes this driver are potentially impacted.
Risk and Exploitability
The CVSS score of 6.7 places the vulnerability in the medium severity band. The EPSS score of less than 1% indicates a low probability of exploitation at present, and the vulnerability is not listed in the CISA KEV catalog. Nevertheless, because local privilege escalation can be achieved without user interaction, the practical risk remains significant for devices that are physically accessible to an attacker.
OpenCVE Enrichment