CVE-2021-0919
MEDIUMAndroid 9-11 - Denial of Service via Integer Overflow in IServiceManager getService
Title source: llmDescription
In getService of IServiceManager.cpp, there is a possible unhandled exception due to an integer overflow. This could lead to local denial of service making the lockscreen unusable with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-9Android ID: A-197336441
References (1)
Core 1
Core References
Vendor Advisory x_refsource_misc
https://source.android.com/security/bulletin/2021-11-01
Scores
CVSS v3
5.0
EPSS
0.0011
EPSS Percentile
1.7%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H
Details
CWE
CWE-190
Status
published
Products (3)
google/android
9.0
google/android
10.0
google/android
11.0
Published
Dec 15, 2021
Tracked Since
Feb 18, 2026