CVE-2019-2215

MEDIUM

Description

A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interaction is required to exploit this vulnerability, however exploitation does require either the installation of a malicious local application or a separate vulnerability in a network facing application.Product: AndroidAndroid ID: A-141720095

References

http://packetstormsecurity.com/files/154911/Android-Binder-Use-After-Free.html

http://seclists.org/fulldisclosure/2019/Oct/38

http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20191030-01-binder-en

https://security.netapp.com/advisory/ntap-20191031-0005/

https://source.android.com/security/bulletin/2019-10-01

Details

Source: MITRE

Published: 2019-10-11

Updated: 2019-10-18

Type: CWE-416

Risk Information

CVSS v2.0

Base Score: 4.6

Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Impact Score: 6.4

Exploitability Score: 3.9

Severity: MEDIUM

CVSS v3.0

Base Score: 7.8

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Impact Score: 5.9

Exploitability Score: 1.8

Severity: HIGH

Vulnerable Software

Configuration 1

OR

cpe:2.3:o:google:android:-:*:*:*:*:*:*:*

Tenable Plugins

View all (8 total)

IDNameProductFamilySeverity
137516EulerOS 2.0 SP2 : kernel (EulerOS-SA-2020-1674)NessusHuawei Local Security Checks
critical
135525EulerOS 2.0 SP3 : kernel (EulerOS-SA-2020-1396)NessusHuawei Local Security Checks
critical
134240Debian DLA-2114-1 : linux-4.9 security updateNessusDebian Local Security Checks
critical
133101Debian DLA-2068-1 : linux security updateNessusDebian Local Security Checks
critical
132360EulerOS 2.0 SP5 : kernel (EulerOS-SA-2019-2693)NessusHuawei Local Security Checks
high
131014Ubuntu 16.04 LTS : Linux kernel vulnerability (USN-4186-3)NessusUbuntu Local Security Checks
high
130966Ubuntu 16.04 LTS : Linux kernel vulnerabilities (USN-4186-1)NessusUbuntu Local Security Checks
high
130751Slackware 14.2 : Slackware 14.2 kernel (SSA:2019-311-01)NessusSlackware Local Security Checks
critical