ASB-A-265303544

Import Source
https://storage.googleapis.com/android-osv/ASB-A-265303544.json
Aliases
  • CVE-2023-0266
Published
2023-05-01T00:00:00Z
Modified
2024-04-25T14:40:10Z
Details

In ctlelemreaduser, ctlelemwriteuser of control_compat.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

References

Affected packages

Android / :linux_kernel:

Package

Affected ranges

Type
ECOSYSTEM
Events
Introduced
:0
Fixed
:2023-05-05

Affected versions

Other

Kernel

Ecosystem specific

{
    "fixes": [
        "https://android.googlesource.com/kernel/common/+/cc6c5c7fa237f65b08b9618188efe4b24b9cd886"
    ],
    "spl": "2023-05-05",
    "types": [
        "EoP"
    ],
    "severity": "Moderate"
}