High severity7.5NVD Advisory· Published Jul 6, 2018· Updated Jun 17, 2026
CVE-2018-5886
CVE-2018-5886
Description
A pointer in an ADSPRPC command is not properly validated in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android), which can lead to kernel memory being accessed.
Affected products
2- Qualcomm, Inc./Android for MSM, Firefox OS for MSM, QRD Androidv5Range: All Android releases from CAF using the Linux kernel
Patches
Vulnerability mechanics
References
2- source.codeaurora.org/quic/la/kernel/msm-3.18/commit/nvdPatchThird Party Advisory
- www.codeaurora.org/security-bulletin/2018/07/02/july-2018-code-aurora-security-bulletinnvdThird Party Advisory
News mentions
0No linked articles in our index yet.