ZeroHour

CVE-2018-11818

CVSS 3.0
7.0 high
EPSS
<1%p3
Published
()
Modified
Description

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, LUT configuration is passed down to driver from userspace via ioctl. Simultaneous update from userspace while kernel drivers are updating LUT registers can lead to race condition.

Vendors
google
Products
android
Weakness
CWE-362, CWE-416
Vector
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.