A bool variable in Video function, which gets typecasted to int before being read could result in an out of bound read access in all Android releases from CAF using the linux kernel
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
http://www.securitytracker.com/id/1041432 | third party advisory vdb entry |
https://www.codeaurora.org/security-bulletin/2018/10/01/october-2018-code-aurora-security-bulletin | third party advisory patch |