In grehandleoffloads of ip_gre.c, there is a possible page fault due to an invalid memory access. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
{
"fixes": [
"https://android.googlesource.com/kernel/common/+/1d011c4803c72f3907eccfc1ec63caefb852fcbf"
],
"types": [
"ID"
],
"severity": "High",
"vanir_signatures": [
{
"id": "ASB-A-150694665-4aaca501",
"target": {
"file": "net/ipv4/ip_gre.c"
},
"digest": {
"threshold": 0.9,
"line_hashes": [
"110645044466692755255968319713222398679",
"182346871114727394199261601235907835902",
"60235824133216559719319124150257643183",
"8614246226498173402592427908140037717"
]
},
"deprecated": true,
"signature_type": "Line",
"source": "https://android.googlesource.com/kernel/common/+/1d011c4803c72f3907eccfc1ec63caefb852fcbf",
"signature_version": "v1"
},
{
"id": "ASB-A-150694665-a98b847c",
"target": {
"file": "net/ipv4/ip_gre.c",
"function": "gre_handle_offloads"
},
"digest": {
"function_hash": "36343471337147875092234569293076229804",
"length": 126.0
},
"deprecated": true,
"signature_type": "Function",
"source": "https://android.googlesource.com/kernel/common/+/1d011c4803c72f3907eccfc1ec63caefb852fcbf",
"signature_version": "v1"
}
],
"spl": "2022-01-05"
}