CVE-2023-28576
—CVSS 3.1
7.0 high
EPSS
<1%p0
Published
()
Modified
Description
The buffer obtained from kernel APIs such as cam_mem_get_cpu_buf() may be readable/writable in userspace after kernel accesses it. In other words, user mode may race and modify the packet header (e.g. header.count), causing checks (e.g. size checks) in kernel code to be invalid. This may lead to out-of-bounds read/write issues.
- Vendors
- qualcomm
- Products
- fastconnect 6800 firmware, fastconnect 6900 firmware, fastconnect 7800 firmware, qca6391 firmware, qca6426 firmware, qca6436 firmware, qcn9074 firmware, qcs410 firmware, qcs610 firmware, sd865 5g firmware, snapdragon 8 gen 1 firmware, snapdragon 865 5g firmware
- Weakness
- CWE-367
- Vector
- CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.