Lucene search

K
osvGoogleOSV:ASB-A-161151868
HistoryOct 01, 2020 - 12:00 a.m.

[1-click remote root exploit chain on the lastest Pixel4] - KASAN READ

2020-10-0100:00:00
Google
osv.dev
19
pixel4
kasan
privilege escalation
binder.c
use-after-free
kernel
exploitation
software

AI Score

7.6

Confidence

High

EPSS

0

Percentile

5.1%

In binder_release_work of binder.c, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.