Description
While processing modem SSR after IMS is registered, the IMS data daemon is restarted but the ipc_dataHandle is no longer available. Consequently, the DPL thread frees the internal memory for dataDHandle but the local variable pointer is not updated which can lead to a Use After Free condition in Snapdragon Mobile and Snapdragon Wear.
Published: 2018-07-06
Score: 8.4 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2018-17658 While processing modem SSR after IMS is registered, the IMS data daemon is restarted but the ipc_dataHandle is no longer available. Consequently, the DPL thread frees the internal memory for dataDHandle but the local variable pointer is not updated which can lead to a Use After Free condition in Snapdragon Mobile and Snapdragon Wear.
History

No history.

Subscriptions

Qualcomm Msm8909w Msm8909w Firmware Msm8996au Msm8996au Firmware Sd 205 Sd 205 Firmware Sd 210 Sd 210 Firmware Sd 212 Sd 212 Firmware Sd 415 Sd 415 Firmware Sd 450 Sd 450 Firmware Sd 615 Sd 615 Firmware Sd 616 Sd 616 Firmware Sd 625 Sd 625 Firmware Sd 650 Sd 650 Firmware Sd 652 Sd 652 Firmware Sd 820 Sd 820 Firmware Sd 835 Sd 835 Firmware Sd 845 Sd 845 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: qualcomm

Published:

Updated: 2024-09-17T01:35:51.050Z

Reserved: 2018-01-19T00:00:00.000Z

Link: CVE-2018-5891

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-07-06T17:29:02.087

Modified: 2024-11-21T04:09:39.020

Link: CVE-2018-5891

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses