login
quiescence.eu
Vai al contenuto

CVE-2011-1823

Android OS Privilege Escalation Vulnerability

n/a
CVSS
41.6%
EPSS (exploit prob.)
98.5%
EPSS percentile
Yes
Actively exploited
No
Ransomware use
2022-09-08
Added

Summary

The vold volume manager daemon in Android kernel trusts messages from a PF_NETLINK socket, which allows an attacker to execute code and gain root privileges. This vulnerability is associated with GingerBreak and Exploit.AndroidOS.Lotoor.

Affected software

Vendor: Android  ·  Product: Android OS

Weakness types (CWE):

CWE-189

What to do

This vulnerability appears in CISA's Known Exploited Vulnerabilities catalog, meaning it is being exploited in the wild. Prioritize patching affected systems and verify exposure across your estate.

Related vulnerabilities in Android

CVENameEPSSExploited
CVE-2019-2215 Android Kernel Use-After-Free Vulnerability 43.8% Yes
CVE-2020-0041 Android Kernel Out-of-Bounds Write Vulnerability 3.2% Yes
CVE-2024-32896 Android Pixel Privilege Escalation Vulnerability 3.0% Yes
CVE-2024-36971 Android Kernel Remote Code Execution Vulnerability 2.7% Yes
CVE-2023-35674 Android Framework Privilege Escalation Vulnerability 2.2% Yes
CVE-2025-48595 Android Framework Integer Overflow Vulnerability 1.7% Yes
CVE-2023-20963 Android Framework Privilege Escalation Vulnerability 1.4% Yes
CVE-2021-0920 Android Kernel Race Condition Vulnerability 0.8% Yes

Is your domain exposed?

Run a free, instant security report for any domain — exposure score, email auth, TLS and breach metadata.

Get your free report

All information is aggregated from public sources for awareness only and does not constitute an accusation or a security assessment. No personal data or credentials are published.