Lucene search

K
osvGoogleOSV:ASB-A-200688826
HistoryMar 01, 2022 - 12:00 a.m.

binder SELinux checks are racy wrt concurrent execve()

2022-03-0100:00:00
Google
osv.dev
5

6.8 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

In several functions of binder.c, there is a possible way to represent the wrong domain to SELinux due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CPENameOperatorVersion
:linux_kernel:eqKernel

6.8 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%