CVE-2021-39636 is a local information disclosure vulnerability affecting the Android kernel, specifically within the ip_tables.c file. This flaw, stemming from uninitialized data in do_ipt_get_ctl and do_ipt_set_ctl, allows for kernel information leakage. It carries a CVSS score of 4.4 (Medium), requiring high privileges for exploitation with no user interaction needed, and its impact is limited to confidentiality. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:google:android:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.