Loading HuntDB...

GHSA-rp36-22f4-gc3f

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

In all Qualcomm products with Android releases from CAF using the Linux kernel, in the function msm_dba_register_client, if the client registers failed, it would be freed. However the client was not removed from list. Use-after-free would occur when traversing the list next time.

Related CVEs

Key Information

GHSA ID
GHSA-rp36-22f4-gc3f
Published
May 13, 2022 1:47 AM
Last Modified
May 13, 2022 1:47 AM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: August 31, 2025 6:33 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.