A vulnerability was found in vl53L0 driver in Kernel where there is a possible out of bounds write due to a permissions bypass. This could lead to local escalation of privilege due to a set_fs() call without restoring the previous limit with System execution privileges needed. User interaction is not needed for exploitation. References: https://source.android.com/security/bulletin/pixel/2019-09-01
Created kernel tracking bugs for this issue: Affects: fedora-all [bug 1819370]
This is another android driver that is not upstream