Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cx4g-pmv3-xm3p

Опубликовано: 09 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.4

Описание

An issue was discovered in Samsung Mobile Processor Exynos Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the function slsi_rx_blockack_ind(), there is no input validation check on a length coming from userspace, which can lead to a potential heap over-read.

An issue was discovered in Samsung Mobile Processor Exynos Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the function slsi_rx_blockack_ind(), there is no input validation check on a length coming from userspace, which can lead to a potential heap over-read.

EPSS

Процентиль: 4%
0.00019
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 4.4
nvd
больше 1 года назад

An issue was discovered in Samsung Mobile Processor Exynos Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the function slsi_rx_blockack_ind(), there is no input validation check on a length coming from userspace, which can lead to a potential heap over-read.

EPSS

Процентиль: 4%
0.00019
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-787