[ASB-A-148588557] Android Vomit Report

Severity High
Affected Packages 1
Fixed Packages 1
CVEs 1

In __flow_hash_from_keys of flow_dissector.c, there is a possible packet injection due to improperly used crypto. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

Package Affected Version
pkg:generic/android#linux_kernel >= :0, < :2020-07-05
Package Fixed Version
pkg:generic/android#linux_kernel = :2020-07-05
ID
ASB-A-148588557
Severity
high
URL
https://source.android.com/security/bulletin/2020-07-01
Published
2020-07-01T00:00:00
(4 years ago)
Modified
2024-07-31T14:43:08
(7 weeks ago)
Rights
Android Security Team
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Fixed pkg:generic/android#linux_kernel android = :2020-07-05
Affected pkg:generic/android#linux_kernel android >= :0 < :2020-07-05
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...