PT-2020-1245 · Google+4 · Android Kernel+4

Published

2020-11-03

·

Updated

2021-07-21

·

CVE-2020-0444

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Android kernel versions (affected versions not specified)
Description The issue is related to a logic error in audit data to entry within auditfilter.c, specifically in the audit free lsm field function. This could lead to a bad kfree operation, potentially resulting in local escalation of privilege without requiring additional execution privileges. User interaction is not necessary for exploitation.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2020:4431
ASB-A-150693166
CESA-2020_4431
CVE-2020-0444
OESA-2021-1086
OPENSUSE-SU-2021:0060-1
OPENSUSE-SU-2021:0075-1
OPENSUSE-SU-2021:0242-1
OPENSUSE-SU-2021_0060-1
OPENSUSE-SU-2021_0075-1
OPENSUSE-SU-2021_0242-1
RHSA-2020:4431
RHSA-2020_4431
RHSA-2021:0686
RHSA-2021:0689
RHSA-2021:0763
RHSA-2021:0765
RHSA-2021:0774
SUSE-SU-2021:0094-1
SUSE-SU-2021:0095-1
SUSE-SU-2021:0096-1
SUSE-SU-2021:0097-1
SUSE-SU-2021:0098-1
SUSE-SU-2021:0108-1
SUSE-SU-2021:0117-1
SUSE-SU-2021:0118-1
SUSE-SU-2021:0133-1
SUSE-SU-2021:0434-1
SUSE-SU-2021:0437-1
SUSE-SU-2021:0438-1
SUSE-SU-2021:0452-1
SUSE-SU-2021_0095-1
SUSE-SU-2021_0108-1

Affected Products

Almalinux
Android Kernel
Centos
Red Hat
Suse