CVE-2018-5840: Google Android

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

Buffer Copy without Checking Size of Input can occur during the DRM SDE driver initialization sequence in all Android releases from CAF (Android for MSM, Firefox OS for MSM, QRD Android) using the Linux Kernel.

Affected products

  • Google Android: affected versions not specified

Published 2018-06-06. Last modified 2026-06-17.