CVE-2021-0587: Use After Free
In StreamOut::prepareForWriting of StreamOut.cpp, there is a possible out of bounds write due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-11Android ID: A-185259758
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-0587?
CVE-2021-0587 has a severity rating that indicates it can lead to local escalation of privilege.
How do I fix CVE-2021-0587?
To fix CVE-2021-0587, ensure your Android device is updated to the latest security patch provided by Google.
What versions of Android are affected by CVE-2021-0587?
CVE-2021-0587 affects Android versions 8.1, 9.0, 10.0, and 11.0.
Is user interaction required for exploiting CVE-2021-0587?
No, user interaction is not needed for the exploitation of CVE-2021-0587.
What could be the consequence of exploiting CVE-2021-0587?
Exploiting CVE-2021-0587 could lead to a local escalation of privilege without any additional execution privileges needed.