CVE-2023-28577

CVSS V2 None CVSS V3 None
Description
In the function call related to CAM_REQ_MGR_RELEASE_BUF there is no check if the buffer is being used. So when a function called cam_mem_get_cpu_buf to get the kernel va to use, another thread can call CAM_REQ_MGR_RELEASE_BUF to unmap the kernel va which cause UAF of the kernel address.
Overview
  • CVE ID
  • CVE-2023-28577
  • Assigner
  • qualcomm
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-08-08T09:15:07.162Z
  • Last Modified Date
  • 2024-04-12T16:24:20.201Z
History
Created Old Value New Value Data Type Notes
2024-06-25 10:50:03 Added to TrackCVE