Описание
There is a Out-of-Bound Write in the Allwinner R818 SoC Android Q SDK V1.0 camera driver "/dev/cedar_dev" through iotcl cmd IOCTL_SET_PROC_INFO and IOCTL_COPY_PROC_INFO, which could cause a system crash or EoP.
Ссылки
- Broken Link
- Third Party Advisory
- ProductVendor Advisory
- Third Party Advisory
- Broken Link
- Third Party Advisory
- ProductVendor Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1
Одновременно
cpe:2.3:a:allwinnertech:android_q_sdk:1.0:*:*:*:*:*:*:*
cpe:2.3:h:allwinnertech:r818:-:*:*:*:*:*:*:*
EPSS
Процентиль: 73%
0.00774
Низкий
7.5 High
CVSS3
7.8 High
CVSS2
Дефекты
CWE-787
Связанные уязвимости
github
около 4 лет назад
There is a Out-of-Bound Write in the Allwinner R818 SoC Android Q SDK V1.0 camera driver "/dev/cedar_dev" through iotcl cmd IOCTL_SET_PROC_INFO and IOCTL_COPY_PROC_INFO, which could cause a system crash or EoP.
EPSS
Процентиль: 73%
0.00774
Низкий
7.5 High
CVSS3
7.8 High
CVSS2
Дефекты
CWE-787