7.2 High
CVSS2
Attack Vector
LOCAL
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:L/AC:L/Au:N/C:C/I:C/A:C
7.8 High
CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
0.0004 Low
EPSS
Percentile
5.1%
In various setup methods of the USB gadget subsystem, there is a possible
out of bounds write due to an incorrect flag check. This could lead to
local escalation of privilege with no additional execution privileges
needed. User interaction is not needed for exploitation.Product:
AndroidVersions: Android kernelAndroid ID: A-210292376References: Upstream
kernel
Author | Note |
---|---|
sbeattie | likely introduces subtle regression that needs f08adf5add9a (“USB: gadget: bRequestType is a bitfield, not a enum”) to address |
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
ubuntu | 18.04 | noarch | linux | < 4.15.0-169.177 | UNKNOWN |
ubuntu | 20.04 | noarch | linux | < 5.4.0-100.113 | UNKNOWN |
ubuntu | 21.10 | noarch | linux | < 5.13.0-37.42 | UNKNOWN |
ubuntu | 16.04 | noarch | linux | < 4.4.0-229.263 | UNKNOWN |
ubuntu | 18.04 | noarch | linux-aws | < 4.15.0-1121.129 | UNKNOWN |
ubuntu | 20.04 | noarch | linux-aws | < 5.4.0-1066.69 | UNKNOWN |
ubuntu | 21.10 | noarch | linux-aws | < 5.13.0-1019.21 | UNKNOWN |
ubuntu | 14.04 | noarch | linux-aws | < 4.4.0-1109.115 | UNKNOWN |
ubuntu | 16.04 | noarch | linux-aws | < 4.4.0-1145.160 | UNKNOWN |
ubuntu | 20.04 | noarch | linux-aws-5.13 | < 5.13.0-1019.21~20.04.1 | UNKNOWN |
github.com/szymonh/inspector-gadget
launchpad.net/bugs/cve/CVE-2021-39685
nvd.nist.gov/vuln/detail/CVE-2021-39685
security-tracker.debian.org/tracker/CVE-2021-39685
ubuntu.com/security/notices/USN-5278-1
ubuntu.com/security/notices/USN-5294-1
ubuntu.com/security/notices/USN-5294-2
ubuntu.com/security/notices/USN-5297-1
ubuntu.com/security/notices/USN-5298-1
ubuntu.com/security/notices/USN-5337-1
ubuntu.com/security/notices/USN-5368-1
ubuntu.com/security/notices/USN-5505-1
ubuntu.com/security/notices/USN-5513-1
www.cve.org/CVERecord?id=CVE-2021-39685
www.openwall.com/lists/oss-security/2021/12/15/4
7.2 High
CVSS2
Attack Vector
LOCAL
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:L/AC:L/Au:N/C:C/I:C/A:C
7.8 High
CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
0.0004 Low
EPSS
Percentile
5.1%