Sploitus

CVE-2021-39685

4 known exploits for CVE-2021-39685

In various setup methods of the USB gadget subsystem, there is a possible out of bounds write due to an incorrect flag check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-210292376References: Upstream kernel

Google Android
All versions
CVSS 3.1
7.8 HIGH
EPSS
0.5% (38th percentile)
Weakness
CWE-787
NVD status
Modified
Published
2022-03-16
CVE-2021-39685 at NVD
Authoritative description, scoring and affected products

4 known exploits for CVE-2021-39685

Proof-of-concept code and exploit modules indexed by Sploitus