Description
In all Qualcomm products with Android releases from CAF using the Linux kernel, in the function wma_roam_synch_event_handler, vdev_id is received from firmware and used to access an array without validation.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-7283 | In all Qualcomm products with Android releases from CAF using the Linux kernel, in the function wma_roam_synch_event_handler, vdev_id is received from firmware and used to access an array without validation. |
References
| Link | Providers |
|---|---|
| https://source.android.com/security/bulletin/2018-02-01 |
|
History
No history.
Status: PUBLISHED
Assigner: qualcomm
Published:
Updated: 2024-09-16T20:02:57.610Z
Reserved: 2017-10-24T00:00:00.000Z
Link: CVE-2017-15861
No data.
Status : Modified
Published: 2018-02-23T23:29:00.640
Modified: 2024-11-21T03:15:21.257
Link: CVE-2017-15861
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD