CVE-2018-5886

HIGH

Android < - Memory Corruption

Title source: llm
STIX 2.1

Description

A pointer in an ADSPRPC command is not properly validated in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android), which can lead to kernel memory being accessed.

Scores

CVSS v3 7.5
EPSS 0.0011
EPSS Percentile 29.7%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-125
Status published
Products (1)
google/android
Published Jul 06, 2018
Tracked Since Feb 18, 2026