PT-2018-16070 · Linux · Linux Kernel

Published

2018-09-19

·

Updated

2018-11-08

·

CVE-2018-3574

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue allows userspace to request ION cache maintenance on a secure ION buffer for which the ION FLAG SECURE ion flag is not set, causing the kernel to attempt to perform cache maintenance on memory which does not belong to HLOS. This affects all Android releases from CAF using the Linux kernel.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-3574

Affected Products

Linux Kernel