Security Advisory

CVE-2024-32900

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-06-13 21:01:58
Last updated 2024-08-19 13:43:09
Assigner Google_Devices
CVSS score not scored
State PUBLISHED

Description

In lwis_fence_signal of lwis_debug.c, there is a possible Use after Free due to improper locking. This could lead to local escalation of privilege from hal_camera_default SELinux label with no additional execution privileges needed. User interaction is not needed for exploitation.