CVE-2021-39698: Use After Free
In aiopollcompletework of aio.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-185125206References: Upstream kernel
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2021-39698?
CVE-2021-39698 is classified as a high-severity vulnerability due to its potential for local privilege escalation.
How do I fix CVE-2021-39698?
To fix CVE-2021-39698, update to the recommended kernel versions: 5.10.223-1, 5.10.226-1, 6.1.123-1, 6.1.128-1, 6.12.12-1, or 6.12.13-1.
What is the impact of CVE-2021-39698?
The impact of CVE-2021-39698 includes memory corruption that can lead to local escalation of privileges without requiring user interaction.
Which systems are affected by CVE-2021-39698?
CVE-2021-39698 affects the Android kernel across multiple versions.
Is user interaction required to exploit CVE-2021-39698?
No, user interaction is not needed for exploiting CVE-2021-39698.