In the l2tp subsystem, there is a possible use after free due to a race condition, which could lead to local escalation of privilege with System execution privileges needed. Reference: https://source.android.com/security/bulletin/pixel/2020-12-01
Created kernel tracking bugs for this issue: Affects: fedora-all [bug 1933738]
This was fixed for Fedora with the 4.13.6 stable kernel updates.
Mitigation: To mitigate this issue, prevent the module l2tp_core from being loaded. Please see https://access.redhat.com/solutions/41278 for information on how to blacklist a kernel module to prevent it from loading automatically.