CVE-2018-11818
CVE-2018-11818
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS —EPSS 0.1%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
18 sep 2018Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, LUT configuration is passed down to driver from userspace via ioctl. Simultaneous update from userspace while kernel drivers are updating LUT registers can lead to race condition.
Productos afectados
Qualcomm, Inc. · Android for MSM, Firefox OS for MSM, QRD AndroidReferencias
https://source.codeaurora.org/quic/la/kernel/msm-3.18/commit/?id=7d1e40be0f7da526f1109005383aa55f5646fc13https://source.codeaurora.org/quic/la/kernel/msm-4.4/commit/?id=999bfde119d881a09218eb045d41fb83e67f0d10https://www.codeaurora.org/security-bulletin/2018/09/04/september-2018-code-aurora-security-bulletin