← Back to browse · API

CVE-2011-1823

Severity
HIGH
CVSS
7.8
EPSS
0.41634
Risk score
70.77
CISA KEV
Yes
PoC
No
Published
2011-06-09
Modified
2025-10-22
First seen
2026-08-07
Aliases
EUVD-2011-1821, GHSA-3HJ2-5CWP-2349
Products
Android:Android OS, n/a:n/a n/a
Sources
cisa.gov CVE-2011-1823
euvd EUVD-2011-1821

Description

The vold volume manager daemon on Android 3.0 and 2.x before 2.3.4 trusts messages that are received from a PF_NETLINK socket, which allows local users to execute arbitrary code and gain root privileges via a negative index that bypasses a maximum-only signed integer check in the DirectVolume::handlePartitionAdded method, which triggers memory corruption, as demonstrated by Gingerbreak.

References