CVE-2020-0305 PUBLISHED

In cdev_get of char_dev.c, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-153467744

EPSS 0.04% · 11.7th percentile

Risk Scores

EPSS Score
0.04%
11.7th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSlinux-hwe0, 5.3.0-28.30~18.04.1, 5.0.0-27.28~18.04.1
Ubuntu:18.04:LTSlinux-azure-5.35.3.0-1013.14~18.04.1, 5.3.0-1012.13~18.04.1, 5.3.0-1010.11~18.04.1
Ubuntu:18.04:LTSlinux-oracle-5.35.3.0-1016.18~18.04.1, 0, 5.3.0-1011.12~18.04.1
Ubuntu:22.04:LTSlinux-intel-iot-realtime0, 5.15.0-1073.75
Ubuntu:Pro:14.04:LTSlinux-lts-xenial4.4.0-139.165~14.04.1, 4.4.0-138.164~14.04.1, 4.4.0-137.163~14.04.1
Ubuntu:Pro:20.04:LTSlinux-azure-fde-5.155.15.0-1063.72~20.04.1.1, 5.15.0-1103.112~20.04.1.1, 5.15.0-1102.111~20.04.1.1
Ubuntu:20.04:LTSlinux-azure-fde5.4.0-1067.70+cvm1.1, 5.4.0-1068.71+cvm1.1, 5.4.0-1098.104+cvm1.1
Ubuntu:18.04:LTSlinux-gcp-edge4.18.0-1005.6~18.04.1, 4.18.0-1004.5~18.04.1, 5.0.0-1013.13~18.04.1
Ubuntu:18.04:LTSlinux-aws-5.35.3.0-1033.35, 5.3.0-1034.36, 5.3.0-1035.37
Ubuntu:Pro:14.04:LTSlinux3.12.0-1.3, 0, 3.11.0-12.19
Ubuntu:18.04:LTSlinux-hwe-edge5.3.0-24.26~18.04.2, 0, 5.0.0-15.16~18.04.1
Ubuntu:16.04:LTSlinux-hwe-edge4.10.0-26.30~16.04.1, 4.11.0-13.19~16.04.1, 4.11.0-14.20~16.04.1
Ubuntu:18.04:LTSlinux-aws-5.05.0.0-1021.24~18.04.1, 0, 5.0.0-1027.30
Ubuntu:16.04:LTSlinux-snapdragon4.4.0-1035.39, 0, 4.4.0-1012.12
Ubuntu:Pro:14.04:LTSlinux-azure4.15.0-1045.49~14.04.1, 4.15.0-1042.46~14.04.1, 4.15.0-1041.45~14.04.1
Ubuntu:16.04:LTSlinux-aws4.4.0-1069.79, 4.4.0-1072.82, 4.4.0-1073.83
Ubuntu:18.04:LTSlinux-azure-edge0, 4.18.0-1006.6~18.04.1, 4.18.0-1007.7~18.04.1
Ubuntu:16.04:LTSlinux-hwe4.15.0-45.48~16.04.1, 4.10.0-40.44~16.04.1, 4.10.0-42.46~16.04.1
Ubuntu:22.04:LTSlinux-riscv5.15.0-1028.32, 5.15.0-1027.31, 5.15.0-1026.30
Ubuntu:18.04:LTSlinux-gke-5.35.3.0-1011.12~18.04.1, 5.3.0-1012.13~18.04.1, 0

…and 33 more

Timeline

References

Open in Interactive Console →