CVE-2018-3572
CVE-2018-3572
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
12 Jun 2018Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
While processing a DSP buffer in an audio driver's event handler, an index of a buffer is not checked before accessing the buffer in all Android releases from CAF (Android for MSM, Firefox OS for MSM, QRD Android) using the Linux Kernel.
Affected products
Qualcomm, Inc. · Android for MSM, Firefox OS for MSM, QRD Android