Due to a race condition in the QTEECOM driver in all Android releases from CAF (Android for MSM, Firefox OS for MSM, QRD Android) using the Linux Kernel, when more than one HLOS client loads the same TA, a Use After Free condition can occur.
References
Link | Resource |
---|---|
https://www.codeaurora.org/security-bulletin/2018/05/11/may-2018-code-aurora-security-bulletin-2 | Patch Third Party Advisory |
https://source.android.com/security/bulletin/pixel/2018-05-01 | Third Party Advisory |
https://www.codeaurora.org/security-bulletin/2018/05/11/may-2018-code-aurora-security-bulletin-2 | Patch Third Party Advisory |
Configurations
History
21 Nov 2024, 04:09
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.codeaurora.org/security-bulletin/2018/05/11/may-2018-code-aurora-security-bulletin-2 - Patch, Third Party Advisory |
Information
Published : 2018-06-12 20:29
Updated : 2024-11-21 04:09
NVD link : CVE-2018-5849
Mitre link : CVE-2018-5849
CVE.ORG link : CVE-2018-5849
JSON object : View
Products Affected
- android