CVE-2021-1048 PUBLISHED KEV

In ep_loop_check_proc of eventpoll.c, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-204573007References: Upstream kernel

EPSS 1.31% · 79.7th percentile

Risk Scores

EPSS Score
1.31%
79.7th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSlinux-hwe-edge4.8.0-30.32~16.04.1, 4.11.0-13.19~16.04.1, 4.10.0-26.30~16.04.1
Ubuntu:18.04:LTSlinux-dell300x4.15.0-1005.8, 0, 4.15.0-1006.10
Ubuntu:18.04:LTSlinux-oracle-5.05.0.0-1011.16, 0, 5.0.0-1009.14~18.04.1
Ubuntu:16.04:LTSlinux-gcp4.15.0-1021.22~16.04.1, 4.15.0-1019.20~16.04.1, 4.15.0-1018.19~16.04.2
Ubuntu:18.04:LTSlinux-gcp-5.35.3.0-1010.11~18.04.1, 0, 5.3.0-1008.9~18.04.1
Ubuntu:20.04:LTSlinux-oem-5.65.6.0-1018.18, 5.6.0-1010.10, 5.6.0-1011.11
Ubuntu:Pro:FIPS-updates:18.04:LTSlinux-aws-fips4.15.0-2030.31, 4.15.0-2027.27, 4.15.0-2026.26
Ubuntu:18.04:LTSlinux-raspi24.13.0-1006.6, 4.13.0-1005.5, 0
Ubuntu:20.04:LTSlinux-hwe-5.85.8.0-63.71~20.04.1, 5.8.0-41.46~20.04.1, 5.8.0-43.49~20.04.1
Ubuntu:18.04:LTSlinux-oracle-5.35.3.0-1028.30~18.04.1, 5.3.0-1027.29~18.04.1, 5.3.0-1024.26~18.04.1
Ubuntu:Pro:FIPS-updates:18.04:LTSlinux-fips4.15.0-1034.39, 4.15.0-1027.32, 0
Ubuntu:18.04:LTSlinux-gcp4.15.0-1001.1, 4.15.0-1025.26, 4.15.0-1014.14
Ubuntu:18.04:LTSlinux-gcp-4.154.15.0-1087.100, 4.15.0-1086.98, 4.15.0-1084.95
Ubuntu:22.04:LTSlinux-realtime5.15.0-1032.35, 0
Ubuntu:20.04:LTSlinux-intel-5.135.13.0-1014.15, 0, 5.13.0-1007.7
Ubuntu:20.04:LTSlinux-azure-5.85.8.0-1033.35~20.04.1, 5.8.0-1043.46~20.04.1, 5.8.0-1042.45~20.04.1
Ubuntu:16.04:LTSlinux-oracle4.15.0-1011.13~16.04.1, 0, 4.15.0-1007.9~16.04.1
Ubuntu:18.04:LTSlinux-aws-5.35.3.0-1023.25~18.04.1, 5.3.0-1035.37, 5.3.0-1034.36
Ubuntu:16.04:LTSlinux-aws-hwe4.15.0-1060.62~16.04.1, 4.15.0-1058.60~16.04.1, 4.15.0-1057.59~16.04.1
Ubuntu:16.04:LTSlinux-hwe4.15.0-46.49~16.04.1, 0, 4.8.0-36.36~16.04.1

…and 24 more

Timeline

References

Open in Interactive Console →