Back to search
CVE-2011-1823
Published: Jun 9, 2011
Modified: Oct 22, 2025
PUBLISHED
Description
The vold volume manager daemon on Android 3.0 and 2.x before 2.3.4 trusts messages that are received from a PF_NETLINK socket, which allows local users to execute arbitrary code and gain root privileges via a negative index that bypasses a maximum-only signed integer check in the DirectVolume::handlePartitionAdded method, which triggers memory corruption, as demonstrated by Gingerbreak.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
android-vold-priv-escalation(67977)
vdb-entry
x_refsource_XF
http://forum.xda-developers.com/showthread.php?t=1044765
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now