Due to a race condition in the QTEECOM driver in all Android releases from CAF (Android for MSM, Firefox OS for MSM, QRD Android) using the Linux Kernel, when more than one HLOS client loads the same TA, a Use After Free condition can occur.
References
Link | Resource |
---|---|
https://source.android.com/security/bulletin/pixel/2018-05-01 | Third Party Advisory |
https://www.codeaurora.org/security-bulletin/2018/05/11/may-2018-code-aurora-security-bulletin-2 | Patch Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: qualcomm
Published: 2018-05-11T00:00:00
Updated: 2018-06-12T19:57:01
Reserved: 2018-01-19T00:00:00
Link: CVE-2018-5849
JSON object: View
NVD Information
Status : Analyzed
Published: 2018-06-12T20:29:01.030
Modified: 2018-08-03T18:37:29.613
Link: CVE-2018-5849
JSON object: View
Redhat Information
No data.