Lucene search

K
osvGoogleOSV:ASB-A-194461020
HistoryNov 01, 2021 - 12:00 a.m.

KASAN: slab-out-of-bounds in xhci_vendor_get_ops when launching android12-5.10 in Cuttlefish

2021-11-0100:00:00
Google
osv.dev
16
kasan
slab-out-of-bounds
xhci_vendor_get_ops
android12-5.10
cuttlefish
local escalation
privilege
bounds check
execution privileges
exploitation
software

EPSS

0

Percentile

5.1%

In xhci_vendor_get_ops of xhci.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

EPSS

0

Percentile

5.1%