Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q39p-c62c-433g

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.4

Описание

While processing modem SSR after IMS is registered, the IMS data daemon is restarted but the ipc_dataHandle is no longer available. Consequently, the DPL thread frees the internal memory for dataDHandle but the local variable pointer is not updated which can lead to a Use After Free condition in Snapdragon Mobile and Snapdragon Wear.

While processing modem SSR after IMS is registered, the IMS data daemon is restarted but the ipc_dataHandle is no longer available. Consequently, the DPL thread frees the internal memory for dataDHandle but the local variable pointer is not updated which can lead to a Use After Free condition in Snapdragon Mobile and Snapdragon Wear.

EPSS

Процентиль: 28%
0.00099
Низкий

8.4 High

CVSS3

Дефекты

CWE-416

Связанные уязвимости

CVSS3: 8.4
nvd
больше 7 лет назад

While processing modem SSR after IMS is registered, the IMS data daemon is restarted but the ipc_dataHandle is no longer available. Consequently, the DPL thread frees the internal memory for dataDHandle but the local variable pointer is not updated which can lead to a Use After Free condition in Snapdragon Mobile and Snapdragon Wear.

EPSS

Процентиль: 28%
0.00099
Низкий

8.4 High

CVSS3

Дефекты

CWE-416