CVE Database
/

CVE-2023-28576

Back to search

CVE-2023-28576

Published: Aug 8, 2023

Modified: Aug 2, 2024

PUBLISHED

CVSS v3.1

6.4

MEDIUM

Description

The buffer obtained from kernel APIs such as cam_mem_get_cpu_buf() may be readable/writable in userspace after kernel accesses it. In other words, user mode may race and modify the packet header (e.g. header.count), causing checks (e.g. size checks) in kernel code to be invalid. This may lead to out-of-bounds read/write issues.

VendorProductVersions

Qualcomm, Inc.

Snapdragon

affected
FastConnect 6800
affected
FastConnect 6900
affected
FastConnect 7800
affected
QCA6391
affected
QCA6426

+26 more versions

Weaknesses (CWE)

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H

Attack Vector

Local

Attack Complexity

High

Privileges Required

High

User Interaction

None

Scope

Unchanged

Confidentiality

High

Integrity

High

Availability

High

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now