CVE-2021-0564
published 2021-06-22CVE-2021-0564: In decrypt of CryptoPlugin.cpp, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System…
medium6.4CVSS 3.1
AVLACHPRHUINSUCHIHAH
In decrypt of CryptoPlugin.cpp, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-176495665
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| android | — | — | |
| platform | frameworks_av | >= 11:0 < 11:2021-06-01 | 11:2021-06-01 |
| platform | hardware_interfaces | >= 11:0 < 11:2021-06-01 | 11:2021-06-01 |