CVE-2014-9922: Google Android

High severity, CVSS 7.8. EPSS: 1.3% chance of exploitation in the next 30 days.

The eCryptfs subsystem in the Linux kernel before 3.18 allows local users to gain privileges via a large filesystem stack that includes an overlayfs layer, related to fs/ecryptfs/main.c and fs/overlayfs/super.c.

Affected products

  • Google Android: up to and including 7.1.1
  • Linux Linux Kernel: up to and including 3.17.8

Published 2017-04-04. Last modified 2026-06-17.