Within the Android drivers, right?
This "security vulnerability" is just a local DoS though. Annoying and problematic as it effectively bypasses controls over power on/off behaviour, but as far as I can tell from this report, no memory is leaked and no code execution can be achieved.
Greg Kroah-Hartman's comment is both wrong and perplexing.