CVE-2021-0509: Use After Free
In various functions of CryptoPlugin.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10 Android-11 Android-8.1Android ID: A-176444161
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-0509?
CVE-2021-0509 has a severity rating that indicates a potential for local escalation of privilege without requiring additional execution privileges.
How do I fix CVE-2021-0509?
To address CVE-2021-0509, update your Android device to the latest security patch provided by Google.
Which versions of Android are affected by CVE-2021-0509?
CVE-2021-0509 affects Android versions 8.1, 9.0, 10.0, and 11.0.
What kind of exploit is associated with CVE-2021-0509?
CVE-2021-0509 is related to a possible use after free vulnerability due to a race condition.
Is user interaction required to exploit CVE-2021-0509?
No, user interaction is not needed for the exploitation of CVE-2021-0509.