CVE-2018-6241
Summary
| CVE | CVE-2018-6241 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-01-31 20:29:00 UTC |
| Updated | 2019-10-03 00:03:00 UTC |
| Description | NVIDIA Tegra Gralloc module contains a vulnerability in driver in which it does not validate input parameter of the registerbuffer API, which may lead to arbitrary code execution, denial of service, or escalation of privileges. Android ID: A-62540032 Severity Rating: High Version: N/A. |
Risk And Classification
Problem Types: CWE-20
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Bulletin: NVIDIA SHIELD TV - August 2019 | NVIDIA | CONFIRM | nvidia.custhelp.com | |
| Android Security Bulletin—January 2019 | Android Open Source Project | CONFIRM | source.android.com | Vendor Advisory |
| Google Android NVIDIA Components CVE-2018-6241 Privilege Escalation Vulnerability | BID | www.securityfocus.com | Third Party Advisory, VDB Entry |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.