CVE-2018-11818

HIGH

Android - Race Condition in LUT Configuration via ioctl

Title source: llm
STIX 2.1

Description

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, LUT configuration is passed down to driver from userspace via ioctl. Simultaneous update from userspace while kernel drivers are updating LUT registers can lead to race condition.

Scores

CVSS v3 7.0
EPSS 0.0014
EPSS Percentile 3.5%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-362 CWE-416
Status published
Products (1)
google/android
Published Sep 18, 2018
Tracked Since Feb 18, 2026