Your submission was sent successfully! Close

CVE-2022-20421

Published: 11 October 2022

In binder_inc_ref_for_node of binder.c, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-239630375References: Upstream kernel

Priority

Medium

CVSS 3 base score: 7.8

Status

Package Release Status
linux
Launchpad, Ubuntu, Debian
bionic Pending

focal Pending

jammy Pending

kinetic Pending

trusty Not vulnerable
(3.11.0-12.19)
upstream
Released (6.0~rc4)
xenial Not vulnerable
(4.4.0-2.16)
Patches:
Introduced by

a60b890f607dc6d7806afc0dc8666577faf40bb4

Fixed by a0e44c64b6061dda7e00b7c458e4523e2331b739
linux-aws
Launchpad, Ubuntu, Debian
bionic Needed

focal Needed

jammy Needed

kinetic Needed

trusty Not vulnerable
(4.4.0-1002.2)
upstream
Released (6.0~rc4)
xenial Not vulnerable
(4.4.0-1001.10)
linux-aws-5.0
Launchpad, Ubuntu, Debian
bionic Ignored
(superseded by linux-aws-5.3)
focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-aws-5.11
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(superseded by linux-aws-5.13)
jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-aws-5.13)
xenial Does not exist

linux-aws-5.13
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(superseded by linux-aws-5.15)
jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-aws-5.15)
xenial Does not exist

linux-aws-5.15
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Needed

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-aws-5.3
Launchpad, Ubuntu, Debian
bionic Ignored
(superseded by linux-aws-5.4)
focal Does not exist

jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-aws-5.4)
xenial Does not exist

linux-aws-5.4
Launchpad, Ubuntu, Debian
bionic Needed

focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-aws-5.8
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(superseded by linux-aws-5.11)
jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-aws-5.11)
xenial Does not exist

linux-aws-hwe
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Ignored
(was needed ESM criteria)
linux-azure
Launchpad, Ubuntu, Debian
bionic Ignored
(superseded by linux-azure-5.3)
focal Needed

jammy Needed

kinetic Needed

trusty Ignored
(was needed ESM criteria)
upstream
Released (6.0~rc4)
xenial Ignored
(was needed ESM criteria)
linux-azure-4.15
Launchpad, Ubuntu, Debian
bionic Needed

focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-azure-5.11
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(superseded by linux-azure-5.13)
jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-azure-5.13)
xenial Does not exist

linux-azure-5.13
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(superseded by linux-azure-5.15)
jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-azure-5.15)
xenial Does not exist

linux-azure-5.15
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Needed

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-azure-5.3
Launchpad, Ubuntu, Debian
bionic Ignored
(superseded by linux-azure-5.4)
focal Does not exist

jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-azure-5.4)
xenial Does not exist

linux-azure-5.4
Launchpad, Ubuntu, Debian
bionic Needed

focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-azure-5.8
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(superseded by linux-azure-5.11)
jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-azure-5.11)
xenial Does not exist

linux-azure-edge
Launchpad, Ubuntu, Debian
bionic Ignored
(superseded by linux-azure-5.3)
focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-azure-fde
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Needs triage

jammy Needed

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-azure-fde-5.15
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Not vulnerable
(5.15.0-1019.24~20.04.1.1)
jammy Does not exist

kinetic Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-bluefield
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Needed

jammy Needed

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-dell300x
Launchpad, Ubuntu, Debian
bionic Needed

focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-fips
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Does not exist

jammy Does not exist

trusty Ignored
(out of standard support)
upstream
Released (6.0~rc4)
xenial Ignored
(out of standard support)
linux-gcp
Launchpad, Ubuntu, Debian
bionic Ignored
(superseded by linux-gcp-5.3)
focal Needed

jammy Needed

kinetic Needed

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Ignored
(was needed ESM criteria)
linux-gcp-4.15
Launchpad, Ubuntu, Debian
bionic Needed

focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-gcp-5.11
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(superseded by linux-gcp-5.13)
jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-gcp-5.13)
xenial Does not exist

linux-gcp-5.13
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(superseded by linux-gcp-5.15)
jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-gcp-5.15)
xenial Does not exist

linux-gcp-5.15
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Needed

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-gcp-5.3
Launchpad, Ubuntu, Debian
bionic Ignored
(superseded by linux-gcp-5.4)
focal Does not exist

jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-gcp-5.4)
xenial Does not exist

linux-gcp-5.4
Launchpad, Ubuntu, Debian
bionic Needed

focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-gcp-5.8
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(superseded by linux-gcp-5.11)
jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-gcp-5.11)
xenial Does not exist

linux-gke
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Needed

jammy Needed

kinetic Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Ignored
(reached end of standard support)
linux-gke-4.15
Launchpad, Ubuntu, Debian
bionic Ignored
(was needs-triage now end-of-life)
focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-gke-5.0
Launchpad, Ubuntu, Debian
bionic Ignored
(superseded by linux-gke-5.3)
focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-gke-5.15
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Needed

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-gke-5.3
Launchpad, Ubuntu, Debian
bionic Ignored
(superseded by linux-gke-5.4)
focal Does not exist

jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-gke-5.4)
xenial Does not exist

linux-gke-5.4
Launchpad, Ubuntu, Debian
bionic Ignored
(was needs-triage now end-of-life)
focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-gkeop
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Needed

jammy Needed

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-gkeop-5.4
Launchpad, Ubuntu, Debian
bionic Ignored
(was needs-triage now end-of-life)
focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-hwe
Launchpad, Ubuntu, Debian
bionic Ignored
(replaced by linux-hwe-5.4)
focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Ignored
(was needed ESM criteria)
linux-hwe-5.11
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(superseded by linux-hwe-5.13)
jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-hwe-5.13)
xenial Does not exist

linux-hwe-5.13
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(superseded by linux-hwe-5.15)
jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-hwe-5.15)
xenial Does not exist

linux-hwe-5.15
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Needed

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-hwe-5.4
Launchpad, Ubuntu, Debian
bionic Needed

focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-hwe-5.8
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(superseded by linux-hwe-5.11)
jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-hwe-5.11)
xenial Does not exist

linux-hwe-edge
Launchpad, Ubuntu, Debian
bionic Ignored
(superseded by linux-hwe-5.4)
focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Ignored
(superseded by linux-hwe)
linux-ibm
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Needed

jammy Needed

kinetic Needed

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-ibm-5.4
Launchpad, Ubuntu, Debian
bionic Needed

focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-intel-5.13
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(was needs-triage now end-of-life)
jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-intel-iotg
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Does not exist

jammy Needed

kinetic Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-intel-iotg-5.15
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Needed

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-kvm
Launchpad, Ubuntu, Debian
bionic Needed

focal Needed

jammy Needed

kinetic Needed

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Not vulnerable
(4.4.0-1004.9)
linux-lowlatency
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Does not exist

jammy Needed

kinetic Needed

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-lowlatency-hwe-5.15
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Needed

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-lts-xenial
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Does not exist

jammy Does not exist

trusty Not vulnerable
(4.4.0-13.29~14.04.1)
upstream
Released (6.0~rc4)
xenial Does not exist

linux-oem
Launchpad, Ubuntu, Debian
bionic Ignored
(was needs-triage now end-of-life)
focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Ignored
(superseded by linux-hwe)
linux-oem-5.10
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(was needs-triage now end-of-life)
jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-oem-5.13
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(superseded by linux-oem-5.14)
jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-oem-5.14)
xenial Does not exist

linux-oem-5.14
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Needed

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-oem-5.17
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Does not exist

jammy Needed

kinetic Needs triage

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-oem-5.6
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(was needs-triage now end-of-life)
jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-oem-osp1
Launchpad, Ubuntu, Debian
bionic Ignored
(was needs-triage now end-of-life)
focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-oracle
Launchpad, Ubuntu, Debian
bionic Needed

focal Needed

jammy Needed

kinetic Needed

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Ignored
(was needed ESM criteria)
linux-oracle-5.0
Launchpad, Ubuntu, Debian
bionic Ignored
(superseded by linux-oracle-5.3)
focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-oracle-5.11
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(superseded by linux-oracle-5.13)
jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-oracle-5.13)
xenial Does not exist

linux-oracle-5.13
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(was needs-triage now end-of-life)
jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-oracle-5.15
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Needed

jammy Does not exist

kinetic Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-oracle-5.3
Launchpad, Ubuntu, Debian
bionic Ignored
(superseded by linux-oracle-5.4)
focal Does not exist

jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-oracle-5.4)
xenial Does not exist

linux-oracle-5.4
Launchpad, Ubuntu, Debian
bionic Needed

focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-oracle-5.8
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(superseded by linux-oracle-5.11)
jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-oracle-5.11)
xenial Does not exist

linux-raspi
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Needed

jammy Needed

kinetic Needed

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-raspi-5.4
Launchpad, Ubuntu, Debian
bionic Needed

focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-raspi2
Launchpad, Ubuntu, Debian
bionic Needed

focal Ignored
(replaced by linux-raspi)
jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Ignored
(end of standard support)
linux-raspi2-5.3
Launchpad, Ubuntu, Debian
bionic Ignored
(superseded by linux-raspi-5.4)
focal Does not exist

jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-raspi2-5.4)
xenial Does not exist

linux-riscv
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(superseded by linux-riscv-5.8)
jammy Needed

kinetic Needed

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Does not exist

linux-riscv-5.11
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(superseded by linux-riscv-5.13)
jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-riscv-5.13)
xenial Does not exist

linux-riscv-5.8
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Ignored
(superseded by linux-riscv-5.11)
jammy Does not exist

trusty Does not exist

upstream Ignored
(superseded by linux-riscv-5.11)
xenial Does not exist

linux-snapdragon
Launchpad, Ubuntu, Debian
bionic Needed

focal Does not exist

jammy Does not exist

trusty Does not exist

upstream
Released (6.0~rc4)
xenial Ignored
(end of standard support)