Use After Free Vulnerability in NVIDIA Driver for Android Devices
CVE-2017-6263

7.8HIGH

Key Information:

Vendor
Nvidia
Status
Vendor
CVE Published:
6 December 2017

Summary

The NVIDIA driver for Android has a use after free vulnerability due to improper management of the list_for_each kernel macro. This flaw can potentially enable unauthorized code execution and lead to privilege escalation, posing a security risk to Android devices utilizing affected NVIDIA drivers. Users are advised to ensure their devices are updated to minimize exposure to this issue.

Affected Version(s)

Android NA

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.