A vulnerability was found in the Linux kernel. In binder_thread_release of binder.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. References: https://source.android.com/security/bulletin/2020-02-01
Created kernel tracking bugs for this issue: Affects: fedora-all [bug 1829842]
Upstream commit: https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=5eeb2ca02a2f6084fc57ae5c244a38baab07033a
External References: https://source.android.com/security/bulletin/2020-02-01
This was fixed for Fedora with the 4.14.22 stable kernel update.