{"id":"ASB-A-218836280","details":"In cgroup1_parse_param of cgroup-v1.c, there is a possible container breakout  due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.","aliases":["A-218836280","CVE-2021-4154"],"modified":"2026-04-17T15:55:28.020024Z","published":"2022-06-01T00:00:00Z","references":[{"type":"ADVISORY","url":"https://source.android.com/security/bulletin/2022-06-01"},{"type":"FIX","url":"https://android.googlesource.com/kernel/common/+/811763e3beb6c"}],"affected":[{"package":{"name":":linux_kernel:","ecosystem":"Android"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":":0"},{"fixed":":2022-06-05"}]}],"versions":["Kernel"],"ecosystem_specific":{"vanir_signatures":[{"target":{"file":"kernel/cgroup/cgroup-v1.c"},"source":"https://android.googlesource.com/kernel/common/+/811763e3beb6c","signature_version":"v1","id":"ASB-A-218836280-0a0279e2","digest":{"threshold":0.9,"line_hashes":["191251821101608297518000102230053641","161478230760747823243509515755670125340","53748005745504328288671075488780645792","268088281257053229139836659380680159012"]},"deprecated":false,"signature_type":"Line"},{"target":{"file":"kernel/cgroup/cgroup-v1.c","function":"cgroup1_parse_param"},"source":"https://android.googlesource.com/kernel/common/+/811763e3beb6c","signature_version":"v1","id":"ASB-A-218836280-f8ce5168","digest":{"length":1976,"function_hash":"43562121027514138802384445818688810638"},"deprecated":false,"signature_type":"Function"}],"spl":"2022-06-05","types":["EoP"],"severity":"High","fixes":["https://android.googlesource.com/kernel/common/+/811763e3beb6c"]},"database_specific":{"source":"https://storage.googleapis.com/android-osv/ASB-A-218836280.json"}}],"schema_version":"1.7.5"}