Vulnerabilities > CVE-2018-5857 - Use After Free vulnerability in Google Android

047910
CVSS 4.6 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
local
low complexity
google
CWE-416

Summary

In the WCD CPE codec, a Use After Free condition can occur in all Android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the Linux kernel.

Vulnerable Configurations

Part Description Count
OS
Google
1

Common Weakness Enumeration (CWE)