Lucene search

K
cvelistGoogle_androidCVELIST:CVE-2021-0938
HistoryOct 25, 2021 - 1:20 p.m.

CVE-2021-0938

2021-10-2513:20:39
google_android
www.cve.org
4
memzero_explicit
defense in depth
local information disclosure
android kernel
upstream kernel
android id

AI Score

6

Confidence

High

EPSS

0

Percentile

5.1%

In memzero_explicit of compiler-clang.h, there is a possible bypass of defense in depth due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-171418586References: Upstream kernel

CNA Affected

[
  {
    "product": "Android",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "Android kernel"
      }
    ]
  }
]

AI Score

6

Confidence

High

EPSS

0

Percentile

5.1%