Vulnerabilities > CVE-2018-21040 - Use After Free vulnerability in Google Android 8.0/8.1/9.0

047910
CVSS 6.8 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL

Summary

An issue was discovered on Samsung mobile devices with O(8.x) and P(9.0) (Exynos 9810 chipsets) software. There is a race condition with a resultant use-after-free in the g2d driver. The Samsung ID is SVE-2018-12959 (December 2018).

Vulnerable Configurations

Part Description Count
OS
Google
3
Hardware
Samsung
1

Common Weakness Enumeration (CWE)