cbcvebase.
CVE-2019-2182
published 2019-09-06

CVE-2019-2182: In the Android kernel in the kernel MMU code there is a possible execution path leaving some kernel text and rodata pages writable. This could lead to local…

PriorityP338high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.22%
12.2th percentile
In the Android kernel in the kernel MMU code there is a possible execution path leaving some kernel text and rodata pages writable. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

Affected

5 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 4.16.5-1 (bookworm)linux 4.16.5-1 (bookworm)
linuxlinux_kernel>= 0 < 4.16.5-14.16.5-1
linuxlinux_kernel>= 0 < 4.16.5-14.16.5-1
linuxlinux_kernel>= 0 < 4.16.5-14.16.5-1
linuxlinux_kernel>= 0 < 4.16.5-14.16.5-1

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.