CVE-2024-39440

In DRM service, there is a possible system crash due to null pointer dereference. This could lead to local denial of service with System execution privileges needed.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:14.0:*:*:*:*:*:*:*
OR cpe:2.3:h:unisoc:s8000:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t606:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t610:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t612:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t616:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t618:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t760:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t770:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t820:-:*:*:*:*:*:*:*

History

17 Oct 2024, 17:33

Type Values Removed Values Added
First Time Unisoc t610
Google
Unisoc t616
Unisoc t820
Unisoc s8000
Unisoc
Google android
Unisoc t760
Unisoc t612
Unisoc t606
Unisoc t770
Unisoc t618
References () https://www.unisoc.com/en_us/secy/announcementDetail/1843898270204624897 - () https://www.unisoc.com/en_us/secy/announcementDetail/1843898270204624897 - Vendor Advisory
CVSS v2 : unknown
v3 : 6.2
v2 : unknown
v3 : 4.4
CWE CWE-476
CPE cpe:2.3:h:unisoc:t770:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t610:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t612:-:*:*:*:*:*:*:*
cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t606:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t820:-:*:*:*:*:*:*:*
cpe:2.3:o:google:android:14.0:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t760:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:s8000:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t616:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t618:-:*:*:*:*:*:*:*

10 Oct 2024, 12:51

Type Values Removed Values Added
Summary
  • (es) En el servicio DRM, es posible que se produzca un bloqueo del sistema debido a la desreferencia de un puntero nulo. Esto podría provocar una denegación local del servicio con privilegios de ejecución de System necesarios.

09 Oct 2024, 07:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-09 07:15

Updated : 2024-10-17 17:33


NVD link : CVE-2024-39440

Mitre link : CVE-2024-39440

CVE.ORG link : CVE-2024-39440


JSON object : View

Products Affected

google

  • android

unisoc

  • t612
  • t616
  • s8000
  • t610
  • t606
  • t760
  • t618
  • t770
  • t820
CWE
CWE-476

NULL Pointer Dereference