UBUNTU-CVE-2019-2000
Dashboard / Vulnerabilities / UBUNTU-CVE-2019-2000
Summary:
Details: In several functions of binder.c, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android kernel. Android ID: A-120025789.
References: https://ubuntu.com/security/CVE-2019-2000, https://source.android.com/security/bulletin/2019-02-01, https://www.exploit-db.com/exploits/46356/, https://github.com/LineageOS/android_kernel_samsung_exynos5420/commit/bad2f5e511a10d64a7623fbdbc52066fd2e9bf0e, https://www.cve.org/CVERecord?id=CVE-2019-2000
Affected packages
Package
Name: linux-azure
Purl: pkg:deb/ubuntu/[email protected]~16.04.2?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
