Description
In all Qualcomm products with Android releases from CAF using the Linux kernel, in wma_unified_link_radio_stats_event_handler(), the number of radio channels coming from firmware is not properly validated, potentially leading to an integer overflow vulnerability followed by a buffer overflow.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-7284 | In all Qualcomm products with Android releases from CAF using the Linux kernel, in wma_unified_link_radio_stats_event_handler(), the number of radio channels coming from firmware is not properly validated, potentially leading to an integer overflow vulnerability followed by a buffer overflow. |
References
| Link | Providers |
|---|---|
| https://source.android.com/security/bulletin/2018-02-01 |
|
History
No history.
Status: PUBLISHED
Assigner: qualcomm
Published:
Updated: 2024-09-17T01:06:58.897Z
Reserved: 2017-10-24T00:00:00.000Z
Link: CVE-2017-15862
No data.
Status : Modified
Published: 2018-02-23T23:29:00.687
Modified: 2024-11-21T03:15:21.357
Link: CVE-2017-15862
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD