Back

HIGH KEV

kernel: Use-after-free in binder.c

Published Oct 11, 2019 ·Due May 3, 2022

Description

A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interaction is required to exploit this vulnerability, however exploitation does require either the installation of a malicious local application or a separate vulnerability in a network facing application.Product: AndroidAndroid ID: A-141720095

Affected products

Remediation

Red Hat mitigation

There is no mitigation required for this flaw as it does not affect shipping Red Hat Enterprise Linux kernels.

Metrics

References (17)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner google_android
Published Oct 11, 2019
Updated Oct 21, 2025
Reserved Dec 10, 2018
CISA Vulnrichment
Updated Feb 7, 2025
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity Moderate
Public date Oct 16, 2019