{"id":"ASB-A-218836280","details":"In cgroup1_parse_param of cgroup-v1.c, there is a possible container breakout  due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.","aliases":["A-218836280","CVE-2021-4154"],"modified":"2026-03-11T05:24:42.378269Z","published":"2022-06-01T00:00:00Z","references":[{"type":"ADVISORY","url":"https://source.android.com/security/bulletin/2022-06-01"},{"type":"FIX","url":"https://android.googlesource.com/kernel/common/+/811763e3beb6c"}],"affected":[{"package":{"name":":linux_kernel:","ecosystem":"Android"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":":0"},{"fixed":":2022-06-05"}]}],"versions":["Kernel"],"ecosystem_specific":{"fixes":["https://android.googlesource.com/kernel/common/+/811763e3beb6c"],"spl":"2022-06-05","severity":"High","vanir_signatures":[{"target":{"file":"kernel/cgroup/cgroup-v1.c"},"digest":{"threshold":0.9,"line_hashes":["191251821101608297518000102230053641","161478230760747823243509515755670125340","53748005745504328288671075488780645792","268088281257053229139836659380680159012"]},"id":"ASB-A-218836280-0a0279e2","signature_version":"v1","signature_type":"Line","deprecated":false,"source":"https://android.googlesource.com/kernel/common/+/811763e3beb6c"},{"target":{"file":"kernel/cgroup/cgroup-v1.c","function":"cgroup1_parse_param"},"digest":{"length":1976,"function_hash":"43562121027514138802384445818688810638"},"id":"ASB-A-218836280-f8ce5168","signature_version":"v1","signature_type":"Function","deprecated":false,"source":"https://android.googlesource.com/kernel/common/+/811763e3beb6c"}],"types":["EoP"]},"database_specific":{"source":"https://storage.googleapis.com/android-osv-test/ASB-A-218836280.json"}}],"schema_version":"1.7.5"}