In binder_release_work of binder.c, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-161151868References: N/A
No PoCs from references.
- https://github.com/ARPSyndicate/cvemon
- https://github.com/Clock-Skew/EndPointX
- https://github.com/IamAlch3mist/Awesome-Android-Vulnerability-Research
- https://github.com/Stoobyy/Kyocera-A101BM-Exploitation
- https://github.com/Swordfish-Security/awesome-android-security
- https://github.com/TinyNiko/android_bulletin_notes
- https://github.com/alphaSeclab/sec-daily-2020
- https://github.com/annapustovaya/Mobix
- https://github.com/kdn111/linux-kernel-exploitation
- https://github.com/khanhdn111/linux-kernel-exploitation
- https://github.com/khanhdz-06/linux-kernel-exploitation
- https://github.com/khanhdz191/linux-kernel-exploitation
- https://github.com/khanhhdz/linux-kernel-exploitation
- https://github.com/khanhhdz06/linux-kernel-exploitation
- https://github.com/khanhnd123/linux-kernel-exploitation
- https://github.com/khnhdz/linux-kernel-exploitation
- https://github.com/knd06/linux-kernel-exploitation
- https://github.com/ndk06/linux-kernel-exploitation
- https://github.com/ndk191/linux-kernel-exploitation
- https://github.com/nomi-sec/PoC-in-GitHub
- https://github.com/plzheheplztrying/cve_monitor
- https://github.com/sparrow-labz/CVE-2020-0423
- https://github.com/ssr-111/linux-kernel-exploitation
- https://github.com/wkhnh06/linux-kernel-exploitation
- https://github.com/xairy/linux-kernel-exploitation