cve/2023/CVE-2023-33110.md

18 lines
811 B
Markdown
Raw Normal View History

2024-05-28 08:49:17 +00:00
### [CVE-2023-33110](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-33110)
![](https://img.shields.io/static/v1?label=Product&message=Snapdragon&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=%3D%20315%205G%20IoT%20Modem%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-823%20Use%20of%20Out-of-range%20Pointer%20Offset&color=brighgreen)
### Description
The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close may lead to race condition between event callback - PCM close and reset session index causing memory corruption.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/fkie-cad/nvd-json-data-feeds