VDB
ASB-A-200688826
ASB-A-200688826
PUBLISHED
In several functions of binder.c, there is a possible way to represent the wrong domain to SELinux due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Android | :linux_kernel: | :0, Kernel, :0 |
Timeline
- Mar 1, 2022 CVE Published
- May 15, 2026 CVE Updated
References
- https://source.android.com/security/bulletin/2022-03-01 advisory
- https://android.googlesource.com/kernel/common/+/d49297739550 patch
- https://android.googlesource.com/kernel/common/+/3af7a2f61023 patch
- https://android.googlesource.com/kernel/common/+/11db2de0af2a patch
- https://android.googlesource.com/kernel/common/+/a4eacf3227bd patch