Buffer Copy without Checking Size of Input can occur during the DRM SDE driver initialization sequence in all Android releases from CAF (Android for MSM, Firefox OS for MSM, QRD Android) using the Linux Kernel.
References
Link | Resource |
---|---|
https://source.android.com/security/bulletin/2018-05-01 | Patch Vendor Advisory |
https://www.codeaurora.org/security-bulletin/2018/05/11/may-2018-code-aurora-security-bulletin-2 | Patch Third Party Advisory |
Configurations
History
No history.
Information
Published : 2018-06-06 21:29
Updated : 2019-10-03 00:03
NVD link : CVE-2018-5840
Mitre link : CVE-2018-5840
CVE.ORG link : CVE-2018-5840
JSON object : View
Products Affected
- android
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')