UBUNTU-CVE-2021-39685 Published: 16 Dec 2021Last Modified: 9 Sept 2026
Details: In various setup methods of the USB gadget subsystem, there is a possible out of bounds write due to an incorrect flag check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-210292376References: Upstream kernel
References: https://ubuntu.com/security/CVE-2021-39685 , https://www.openwall.com/lists/oss-security/2021/12/15/4 , https://github.com/szymonh/inspector-gadget , https://ubuntu.com/security/notices/USN-5278-1 , https://ubuntu.com/security/notices/USN-5294-1 , https://ubuntu.com/security/notices/USN-5294-2 , https://ubuntu.com/security/notices/USN-5297-1 , https://ubuntu.com/security/notices/USN-5298-1 , https://ubuntu.com/security/notices/USN-5337-1 , https://ubuntu.com/security/notices/USN-5368-1 , https://ubuntu.com/security/notices/USN-5505-1 , https://ubuntu.com/security/notices/USN-5513-1 , https://www.cve.org/CVERecord?id=CVE-2021-39685
linux-aws
linux-azure
linux-lts-xenial
linux
linux
linux-aws
linux-aws-hwe
linux-azure
linux-gcp
linux-hwe
linux-kvm
linux-oracle
linux-hwe-edge
linux-fips
linux-fips
linux
linux-aws
linux-aws-5.4
linux-azure-4.15
linux-azure-5.4
linux-dell300x
linux-gcp-4.15
linux-gcp-5.4
linux-gke-5.4
linux-gkeop-5.4
linux-hwe-5.4
linux-ibm-5.4
linux-kvm
linux-oracle
linux-oracle-5.4
linux-raspi-5.4
linux-raspi2
linux-snapdragon
linux-aws-5.0
linux-aws-5.3
linux-azure
linux-azure-5.3
linux-azure-edge
linux-gcp
linux-gcp-5.3
linux-gke-4.15
linux-hwe
linux-hwe-edge
linux-oem
linux-oracle-5.0
linux-oracle-5.3
linux-aws-fips
linux-azure-fips
linux-fips
linux-gcp-fips
linux-aws-fips
linux-azure-fips
linux-fips
linux-gcp-fips
linux
linux-aws
linux-aws-5.13
linux-azure
linux-azure-5.13
linux-bluefield
linux-gcp
linux-gcp-5.13
linux-gke
linux-gkeop
linux-hwe-5.13
linux-ibm
linux-kvm
linux-oem-5.14
linux-oracle
linux-oracle-5.13
linux-raspi
linux-aws-5.11
linux-aws-5.8
linux-azure-5.11
linux-azure-5.8
linux-gcp-5.11
linux-gcp-5.8
linux-hwe-5.11
linux-hwe-5.8
linux-intel-5.13
linux-oem-5.10
linux-oem-5.13
linux-oem-5.6
linux-oracle-5.11
linux-oracle-5.8
linux-raspi2
linux-riscv
linux-riscv-5.11
linux-riscv-5.8
linux-aws-fips
linux-azure-fips
linux-fips
linux-gcp-fips
linux-aws-fips
linux-azure-fips
linux-fips
linux-gcp-fips
linux-intel-iot-realtime
linux-realtime
linux-raspi-realtime
Package Name: linux-aws
Purl: pkg:deb/ubuntu/linux-aws?arch=source&distro=trusty%2Fesm
Affected ranges Type: ECOSYSTEM
Events:
Introduced - 0
Fixed - 4.4.0-1109.115
4.4.0-1002.2
4.4.0-1003.3
4.4.0-1005.5
4.4.0-1006.6
4.4.0-1009.9
4.4.0-1010.10
4.4.0-1011.11
4.4.0-1012.12
4.4.0-1014.14
4.4.0-1016.16
4.4.0-1017.17
4.4.0-1019.19
4.4.0-1022.22
4.4.0-1023.23
4.4.0-1024.25
4.4.0-1025.26
4.4.0-1027.30
4.4.0-1028.31
4.4.0-1029.32
4.4.0-1031.34
4.4.0-1032.35
4.4.0-1034.37
4.4.0-1036.39
4.4.0-1037.40
4.4.0-1038.41
4.4.0-1039.42
4.4.0-1040.43
4.4.0-1042.45
4.4.0-1044.47
4.4.0-1045.48
4.4.0-1046.50
4.4.0-1048.52
4.4.0-1050.54
4.4.0-1052.56
4.4.0-1054.58
4.4.0-1055.59
4.4.0-1056.60
4.4.0-1058.62
4.4.0-1059.63
4.4.0-1060.64
4.4.0-1061.65
4.4.0-1062.66
4.4.0-1064.68
4.4.0-1065.69
4.4.0-1066.70
4.4.0-1067.71
4.4.0-1073.77
4.4.0-1074.78
4.4.0-1075.79
4.4.0-1076.80
4.4.0-1077.81
4.4.0-1078.82
4.4.0-1081.85
4.4.0-1082.86
4.4.0-1083.87
4.4.0-1085.89
4.4.0-1086.90
4.4.0-1087.91
4.4.0-1088.92
4.4.0-1090.94
4.4.0-1091.95
4.4.0-1092.96
4.4.0-1093.97
4.4.0-1094.99
4.4.0-1095.100
4.4.0-1096.101
4.4.0-1097.102
4.4.0-1098.103
4.4.0-1099.104
4.4.0-1101.106
4.4.0-1102.107
4.4.0-1103.108
4.4.0-1104.109
4.4.0-1107.113