cbcvebase.
CVE-2019-2215
published 2019-10-11

CVE-2019-2215: A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interaction is required to exploit this…

high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
KEVITWEXPLOIT
CISA Known Exploited Vulnerabilitydue 2022-05-03
Exploited in the wild
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interaction is required to exploit this vulnerability, however exploitation does require either the installation of a malicious local application or a separate vulnerability in a network facing application.Product: AndroidAndroid ID: A-141720095

Affected

71 ranges· showing 25
VendorProductVersion rangeFixed in
canonicalubuntu_linux
debiandebian_linux
debianlinux< linux 4.15.4-1 (bookworm)linux 4.15.4-1 (bookworm)
googleandroid
huaweialp-al00b_firmware< 10.0.0.162\(c00e156r2p4\)10.0.0.162\(c00e156r2p4\)
huaweialp-tl00b_firmware< 10.0.0.162\(c01e156r1p4\)10.0.0.162\(c01e156r1p4\)
huaweianne-al00_firmware< 9.1.0.126\(c00e126r1p7t8\)9.1.0.126\(c00e126r1p7t8\)
huaweiares-al00b_firmware< 9.1.0.165\(c00e165r2p5t8\)9.1.0.165\(c00e165r2p5t8\)
huaweiares-al10d_firmware< 9.1.0.165\(c00e165r2p5t8\)9.1.0.165\(c00e165r2p5t8\)
huaweiares-tl00chw_firmware< 8.2.0.163\(c01r2p1\)8.2.0.163\(c01r2p1\)
huaweibarca-al00_firmware< 8.0.0.377\(c00\)8.0.0.377\(c00\)
huaweiberkeley-l09_firmware< 9.1.0.351\(c432e5r1p13t8\)9.1.0.351\(c432e5r1p13t8\)
huaweiberkeley-tl10_firmware< 9.1.0.333\(c01e333r1p1t8\)9.1.0.333\(c01e333r1p1t8\)
huaweibla-al00b_firmware< 10.0.0.170\(c786e170r2p4\)10.0.0.170\(c786e170r2p4\)
huaweibla-l29c_firmware< 9.1.0.300\(c432e4r1p11t8\)9.1.0.300\(c432e4r1p11t8\)
huaweibla-tl00b_firmware< 10.0.0.170\(c01e170r1p4\)10.0.0.170\(c01e170r1p4\)
huaweicolumbia-al00a_firmware< 8.1.0.186\(c00gt\)8.1.0.186\(c00gt\)
huaweicolumbia-l29d_firmware< 9.1.0.325\(c432e4r1p12t8\)9.1.0.325\(c432e4r1p12t8\)
huaweicornell-tl10b_firmware< 9.1.0.321\(c01e320r1p1t8\)9.1.0.321\(c01e320r1p1t8\)
huaweiduke-l09i_firmware< 9.0.1.171\(c675e6r1p5t8\)9.0.1.171\(c675e6r1p5t8\)
huaweidura-al00a_firmware< 1.0.0.190\(c00\)1.0.0.190\(c00\)
huaweifigo-al00a_firmware< 9.1.0.130\(c00e115r2p8t8\)9.1.0.130\(c00e115r2p8t8\)
huaweiflorida-al20b_firmware< 9.1.0.128\(c00e112r1p6t8\)9.1.0.128\(c00e112r1p6t8\)
huaweiflorida-l03_firmware< 9.1.0.154\(c605e7r1p2t8\)9.1.0.154\(c605e7r1p2t8\)
huaweiflorida-l21_firmware< 9.1.0.154\(c605e7r1p2t8\)9.1.0.154\(c605e7r1p2t8\)

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vulncheck7.8HIGH
cisa7.8HIGH