PT-2021-13065 · Google · Android

Published

2021-03-10

·

Updated

2021-03-12

·

CVE-2021-0387

CVSS v2.0

6.9

Medium

VectorAV:L/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Android versions Android-11
Description: The issue is related to a possible use-after-free due to a race condition in the FindQuotaDeviceForUuid function of QuotaUtils.cpp. This could lead to local escalation of privilege, requiring System execution privileges. No user interaction is needed for exploitation.
Recommendations: For Android version Android-11, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Race Condition

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-0387

Affected Products

Android