In __pkvm_host_share_guest of mem_protect.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Metrics
Affected Vendors & Products
References
History
Tue, 03 Mar 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Google
Google android |
|
| CPEs | cpe:2.3:o:google:android:-:*:*:*:*:*:*:* | |
| Vendors & Products |
Google
Google android |
Mon, 02 Mar 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-190 | |
| Metrics |
cvssV3_1
|
Mon, 02 Mar 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In __pkvm_host_share_guest of mem_protect.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. | |
| References |
|
|
Status: PUBLISHED
Assigner: google_android
Published: 2026-03-02T18:42:50.692Z
Updated: 2026-03-03T04:56:43.147Z
Reserved: 2025-10-15T15:39:08.757Z
Link: CVE-2026-0028
Updated: 2026-03-02T20:59:29.255Z
Status : Analyzed
Published: 2026-03-02T19:16:31.007
Modified: 2026-03-03T15:25:10.513
Link: CVE-2026-0028
No data.