Lucene search

K
osvGoogleOSV:ASB-A-209791720
HistoryApr 01, 2022 - 12:00 a.m.

race condition between ION_IOC_ALLOC and ION_IOC_FREE could lead to UAF in [upstream-linux-4.9.y] branch

2022-04-0100:00:00
Google
osv.dev
4

7.2 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

In ion_ioctl of ion-ioctl.c, there is a possible use after free due to improper locking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CPENameOperatorVersion
:linux_kernel:eqKernel

7.2 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

Related for OSV:ASB-A-209791720