Severity
7.8HIGHNVD
EPSS
0.0%
top 93.00%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 16
Latest updateOct 21

Description

In convertYUV420Planar16ToY410 of ColorConverter.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages3 packages

Androidplatform/frameworks_av14-next:014-next:2024-01-01+5
CVEListV5google/android5 versions+4
NVDgoogle/android5 versions+4

Patches

🔴Vulnerability Details

5
OSV
drm/amd/display: Skip Recompute DSC Params if no Stream on Link2024-08-26
OSV
CVE-2024-26929: In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix double free of fcport The server was crashing after LOGO beca2024-05-01
CVEList
CVE-2024-0018: In convertYUV420Planar16ToY410 of ColorConverter2024-02-16
GHSA
GHSA-mwr4-m2r6-rmh7: In convertYUV420Planar16ToY410 of ColorConverter2024-02-16
OSV
CVE-2024-0018: In convertYUV420Planar16ToY410 of ColorConverter2024-01-01

📋Vendor Advisories

9
Red Hat
kernel: rcu-tasks: Fix access non-existent percpu rtpcp variable in rcu_tasks_need_gpcb()2024-10-21
Red Hat
kernel: mm/filemap: fix filemap_get_folios_contig THP panic2024-10-21
Red Hat
kernel: scsi: qla2xxx: Complete command early within lock2024-08-17
Red Hat
kernel: scsi: qla2xxx: During vport delete send async logout explicitly2024-08-17
Red Hat
kernel: scsi: qedi: Fix crash while reading debugfs attribute2024-07-12
CVE-2024-0018 — Out-of-bounds Write in Frameworks AV | cvebase