Android Kernel KASLR Bypass Vulnerability Allowing Local Information Disclosure

Vulnerability

A vulnerability exists in the Android kernel that allows for a potential bypass of Kernel Address Space Layout Randomization (KASLR). This issue could lead to local information disclosure, but requires system execution privileges to exploit. Notably, user interaction is not necessary for exploitation.

Impact

Exploitation of this vulnerability could result in unauthorized access to sensitive information, potentially allowing for further exploitation of the system.

Remediation

Users can update their devices to the June 2018 security patch level to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
2.5
exploitability
2.8
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.