VDB
ASB-A-441808375
ASB-A-441808375
PUBLISHED
CVSS 8.600000381469727 HIGH
In __host_check_page_state_range of mem_protect.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Risk Scores
CVSS 4.0
8.600000381469727
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Android | :linux_kernel: | Kernel, *, Kernel |
Exploit Intelligence
- index.html (github-poc)
- ghost_report_20260113_010235.json (github-poc)
Timeline
- Mar 1, 2026 CVE Published
- May 15, 2026 CVE Updated
References
- https://source.android.com/security/bulletin/2026-03-01 advisory
- https://android.googlesource.com/kernel/common/+/986614312222d4b3bdcf16840cdb4abdaed8a42d patch
- https://android.googlesource.com/kernel/common/+/aff2255dbe38dc7c57bac8d3ba9feed989289b20 patch
- https://android.googlesource.com/kernel/common/+/f3a4b4d4a1fe2aface7de74ac257b8705b6de472 patch