VDB
ASB-A-238379819
ASB-A-238379819
PUBLISHED
a function called 'nla_parse', do not check the len of para, it will check nla_type (which can be controlled by userspace) with 'maxtype' (in this case, it is GSCAN_MAX), then it access polciy array 'policy[type]', which OOB access happens.
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Android | :unknown: | SoCVersion:0, SoCVersion, SoCVersion:0 |
Timeline
- Sep 1, 2022 CVE Published
- May 15, 2026 CVE Updated