Security Advisory

CVE-2017-0866

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2017-11-16 22:00:00
Last updated 2024-09-16 18:49:08
Assigner google_android
State PUBLISHED

Description

An elevation of privilege vulnerability in the Direct rendering infrastructure of the NVIDIA Tegra X1 where an unchecked input from userspace is passed as a pointer to kfree. This could lead to kernel memory corruption and possible code execution. This issue is rated as moderate. Product: Pixel. Version: N/A. Android ID: A-38415808. References: N-CVE-2017-0866.