In the cpuidle driver in all Android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the Linux kernel, the list_for_each macro was not used correctly which could lead to an untrusted pointer dereference.
The product dereferences a pointer that it expects to be valid but is NULL.
Link | Tags |
---|---|
https://www.vulnerabilitycenter.com/#%21vul=87349 | |
https://source.android.com/security/bulletin/pixel/2018-07-01#qualcomm-components | patch vendor advisory |