First published: Thu Sep 17 2020(Updated: )
In skb_to_mamac of networking.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-143560807
Credit: security@android.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | ||
openSUSE | =15.1 | |
openSUSE | =15.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-0432 is a vulnerability in the Android kernel that allows for local escalation of privilege due to an integer overflow.
The severity of CVE-2020-0432 is high with a CVSS score of 7.8.
Google Android and openSUSE Leap versions 15.1 and 15.2 are affected by CVE-2020-0432.
CVE-2020-0432 can be exploited locally without user interaction.
Yes, patches and updates are available. Please refer to the provided references for more information.