Security Advisory

CVE-2018-11904

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-09-19 14:00:00
Last updated 2024-08-05 08:24:03
Assigner qualcomm
CVSS score not scored
State PUBLISHED

Description

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, asynchronous callbacks received a pointer to a callers local variable. Should the caller return early (e.g., timeout), the callback will dereference an invalid pointer.