Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2019-2215

A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interaction is required to exploit this vulnerability, however exploitation does require either the installation of a malicious local application or a separate vulnerability in a network facing application.Product: AndroidAndroid ID: A-141720095
Exploit prediction scoring system (EPSS) score
EPSS Score 0.482
EPSS Ranking 97.6%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 4.6
Proposed Action
Android Kernel contains a use-after-free vulnerability in binder.c that allows for privilege escalation from an application to the Linux Kernel. This vulnerability was observed chained with CVE-2020-0041 and CVE-2020-0069 under exploit chain "AbstractEmu."
Ransomware Campaign
Unknown
References
Products affected by CVE-2019-2215


Contact Us

Shodan ® - All rights reserved