VDB

ASB-A-238379819

ASB-A-238379819 PUBLISHED

a function called 'nla_parse', do not check the len of para, it will check nla_type (which can be controlled by userspace) with 'maxtype' (in this case, it is GSCAN_MAX), then it access polciy array 'policy[type]', which OOB access happens.

Affected Products

VendorProductVersions
Android:unknown:SoCVersion:0, SoCVersion, SoCVersion:0

Timeline

  • Sep 1, 2022 CVE Published
  • May 15, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›