In fillthreadcoreinfo of binfmtelf.c, there is a possible leak of kernel heap memory due to uninitialized data. This could lead to local information disclosure to an application core dump with no additional execution privileges needed. User interaction is not needed for exploitation.
{ "vanir_signatures": [ { "digest": { "threshold": 0.9, "line_hashes": [ "110497612160530527403063993914174505403", "200521148035237612312138835802718584258", "251565754673033647669578957977982994687", "141562414025503136830371800170307866478" ] }, "id": "ASB-A-170658976-f1714f52", "source": "http://android.googlesource.com/kernel/common/+/1d605416fb7175e1adf094251466caa52093b413", "deprecated": false, "signature_version": "v1", "target": { "file": "fs/binfmt_elf.c" }, "signature_type": "Line" } ], "fixes": [ "http://android.googlesource.com/kernel/common/+/1d605416fb7175e1adf094251466caa52093b413" ], "spl": "2021-01-05", "severity": "High", "types": [ "ID" ] }