ZeroHour

CVE-2018-5841

CVSS 3.0
7.8 high
EPSS
<1%p32
Published
()
Modified
Description

dcc_curr_list is initialized with a default invalid value that is expected to be programmed by the user through a sysfs node which could lead to an invalid access in all Android releases from CAF (Android for MSM, Firefox OS for MSM, QRD Android) using the Linux Kernel.

Vendors
google
Products
android
Weakness
CWE-1188
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.