CVE-2011-1823
HIGH KEVAndroid <2.3.4 - Privilege Escalation
Title source: llmDescription
The vold volume manager daemon on Android 3.0 and 2.x before 2.3.4 trusts messages that are received from a PF_NETLINK socket, which allows local users to execute arbitrary code and gain root privileges via a negative index that bypasses a maximum-only signed integer check in the DirectVolume::handlePartitionAdded method, which triggers memory corruption, as demonstrated by Gingerbreak.
References (10)
Scores
CVSS v3
7.8
EPSS
0.3834
EPSS Percentile
97.2%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Details
CISA KEV
2022-09-08
VulnCheck KEV
2021-08-17
ENISA EUVD
EUVD-2011-1821
CWE
CWE-190
Status
published
Products (2)
google/android
3.0
google/android
2.0 - 2.3.4
Published
Jun 09, 2011
KEV Added
Sep 08, 2022
Tracked Since
Feb 18, 2026