Buffer Copy without Checking Size of Input can occur during the DRM SDE driver initialization sequence in all Android releases from CAF (Android for MSM, Firefox OS for MSM, QRD Android) using the Linux Kernel.
References
Link | Resource |
---|---|
https://www.codeaurora.org/security-bulletin/2018/05/11/may-2018-code-aurora-security-bulletin-2 | Patch Third Party Advisory |
https://source.android.com/security/bulletin/2018-05-01 | Patch Vendor Advisory |
https://www.codeaurora.org/security-bulletin/2018/05/11/may-2018-code-aurora-security-bulletin-2 | Patch Third Party Advisory |
Configurations
History
21 Nov 2024, 04:09
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.codeaurora.org/security-bulletin/2018/05/11/may-2018-code-aurora-security-bulletin-2 - Patch, Third Party Advisory |
Information
Published : 2018-06-06 21:29
Updated : 2024-11-21 04:09
NVD link : CVE-2018-5840
Mitre link : CVE-2018-5840
CVE.ORG link : CVE-2018-5840
JSON object : View
Products Affected
- android
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')