Race condition vulnerability in Android camera driver: msm_ois_power_down function without mutex

Race condition vulnerability in Android camera driver: msm_ois_power_down function without mutex

CVE-2017-9708 · MEDIUM Severity

AV:L/AC:M/AU:N/C:P/I:P/A:P

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the camera driver, the function "msm_ois_power_down" is called without a mutex and a race condition can occur in variable "*reg_ptr" of sub function "msm_camera_config_single_vreg".

Learn more about our Cis Benchmark Audit For Distribution Independent Linux.