In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MSM8974, lack of length checking in OEMCrypto_DeriveKeysFromSessionKey() could lead to a buffer overflow vulnerability.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: qualcomm
Published: 2018-04-18T14:00:00Z
Updated: 2024-09-16T22:30:57.691Z
Reserved: 2017-08-16T00:00:00
Link: CVE-2015-9179
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2018-04-18T14:29:06.777
Modified: 2018-05-09T15:26:52.013
Link: CVE-2015-9179
Redhat
No data.