CVE-2020-0438: High severity Google Android vulnerability
In the AIBinderClass constructor of ibinder.cpp, there is a possible arbitrary code execution due to uninitialized data. This could lead to local escalation of privilege if a process were using libbinderndk in a vulnerable way with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-10Android ID: A-161812320
Affected Software
Event History
Frequently Asked Questions
Who is exposed to this issue?
The issue affects Android 10 and Android 11 where a process uses libbinder_ndk in the vulnerable way described. Exploitation is local, so it is relevant to devices on which an attacker can already execute a low-privileged process.
What access does an attacker need to exploit it?
An attacker needs local access with low privileges. No user interaction or additional execution privileges are required.
What is the likely impact of successful exploitation?
Successful exploitation can result in arbitrary code execution and local privilege escalation. Confidentiality, integrity, and availability are all rated high in the supplied CVSS vector.