CVE-2021-39793
CVE Published | 2022-03-16 |
---|---|
Related CWE(s) | CWE-787: Out-of-bounds Write |
Related Vendor(s) | |
Related Product(s) | android |
Exploitation Reported (CISA KEV) | 2022-04-11 |
CVSS 3 Base Score | 7.8 (HIGH) |
CVSS 3 Attack Complexity | LOW |
CVSS 3 Attack Vector | LOCAL |
In kbase_jd_user_buf_pin_pages of mali_kbase_mem.c, there is a possible out of bounds write due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-210470189References: N/A
Cyber Threat Graph Context
Explore how this CVE relates to the wider threat graph