CVE-2021-39803: Use After Free
Published Apr 4, 2022
·Updated
In ~Impl of C2AllocatorIon.cpp, there is a possible out of bounds read due to a use after free. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid ID: A-193790350
Affected Software
5 affected components
Google Android=10.0
Google Android=11.0
Google Android=12.0
Google Android=12.1
Google Android
Remediation
Patch Available
Event History
Apr 4, 2022
CVE Published
via Android·12:00 AM
Data Sourced
via Android·12:00 AM
SeverityWeaknessAffected Software
Apr 12, 2022
CVE Published
via MITRE·04:11 PM
Data Sourced
via MITRE·04:11 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2021-39803.
2
What is the severity of CVE-2021-39803?
The severity of CVE-2021-39803 is high.
3
How can this vulnerability be exploited?
This vulnerability can be exploited through user interaction and can lead to remote information disclosure.
4
Which versions of Android are affected by CVE-2021-39803?
Versions Android-10, Android-11, Android-12, and Android-12.1 are affected by CVE-2021-39803.
5
Are there any references available for CVE-2021-39803?
Yes, references for CVE-2021-39803 can be found at the following links: [Link1], [Link2], [Link3].