In binder_inc_ref_for_node of binder.c, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-239630375References: Upstream kernel
Conclusion & alert: CVE-2022-20421 is rated Moderate Risk (63.3/100): CVSS High severity, with high exploitation likelihood (EPSS 5.86%, 91th percentile). Core evidence: EPSS ranks this CVE among the most likely to be exploited in the near term. Mandatory action: High exploitation likelihood—assess exposure and prioritize remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-06-07 | 5.57% | 5.86% | +0.29% |
| 2 | 2026-05-25 | 5.43% | 5.57% | +0.14% |
| 3 | 2026-05-04 | — | 5.43% | — |
Full EPSS history (29 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 7.8 | 3.1 | HIGH |
|
1.8 | 5.9 | [email protected] |
| vendor | priority | summary | link |
|---|---|---|---|
debian
|
not yet assigned | CVE-2022-20421 not yet assigned priority: Debian including 1 source packages (linux), 5 status rows across 5 suites (bookworm, bullseye, forky, sid, trixie): resolved 5. | https://security-tracker.debian.org/tracker/CVE-2022-20421 |
redhat
|
medium | — | https://access.redhat.com/security/cve/CVE-2022-20421 |
suse
|
high | CVE-2022-20421 severity important: SUSE including 13 source package names (cluster-md-kmp-default, dlm-kmp-default, …), 138 product×package rows across 52 product lines (SUSE CaaS Platform 4.0, SUSE Enterprise Storage 6, … (52 product lines)): Known Not Affected 138. | https://www.suse.com/security/cve/CVE-2022-20421/ |
ubuntu
|
medium | CVE-2022-20421 medium priority: Ubuntu including 167 source packages (linux, linux-allwinner, …), 1774 status rows across 13 suites (bionic, focal, jammy, kinetic, lunar, mantic, noble, oracular, plucky, questing, trusty, upstream, xenial): DNE 1316, released 211, not-affected 162, ignored 85. | https://ubuntu.com/security/CVE-2022-20421 |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| android | — | cpe:2.3:o:google:android:-:*:*:*:*:*:*:* | |
| debian | debian_linux | 10.0 | cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:* |
| debian | debian_linux | 11.0 | cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| https://lists.debian.org/debian-lts-announce/2022/11/msg00001.html | Mailing List Third Party Advisory |
| https://source.android.com/security/bulletin/2022-10-01 | Patch Vendor Advisory |
| https://www.debian.org/security/2022/dsa-5257 | Third Party Advisory |