VYPR
High severity7.8NVD Advisory· Published Jan 8, 2025· Updated Jun 17, 2026

CVE-2023-35685

CVE-2023-35685

Description

In DevmemIntMapPages of devicemem_server.c, there is a possible physical page uaf due to a logic error in the code. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.

Affected products

3
  • Google/Androidv52 versions
    Android SoC+ 1 more
    • (no CPE)range: Android SoC
    • cpe:2.3:o:google:android:-:*:*:*:*:*:*:*
  • Google/Kernelllm-fuzzy

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.