While processing modem SSR after IMS is registered, the IMS data daemon is restarted but the ipc_dataHandle is no longer available. Consequently, the DPL thread frees the internal memory for dataDHandle but the local variable pointer is not updated which can lead to a Use After Free condition in Snapdragon Mobile and Snapdragon Wear.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: qualcomm

Published: 2018-07-06T17:00:00Z

Updated: 2024-09-17T01:35:51.050Z

Reserved: 2018-01-19T00:00:00

Link: CVE-2018-5891

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-07-06T17:29:02.087

Modified: 2024-11-21T04:09:39.020

Link: CVE-2018-5891

cve-icon Redhat

No data.