Details: In alarm_ready_generic of alarm.cc, there is a possible out of bounds write due to a use after free. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-67110137. [NIST-CVE-2017-13272]
Discovered by: Wish Wu (@wish_wu 吴潍浠 此彼) of Ant-financial Light-Year Security Lab [Discovery-CVE-2017-13272] on: Unknown