In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the function wma_ndp_end_indication_event_handler(), there is no input validation check on a event_info value coming from firmware, which can cause an integer overflow and then leads to potential heap overwrite.
Advisories
Source ID Title
EUVD EUVD EUVD-2017-7253 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the function wma_ndp_end_indication_event_handler(), there is no input validation check on a event_info value coming from firmware, which can cause an integer overflow and then leads to potential heap overwrite.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: qualcomm

Published:

Updated: 2024-09-17T01:22:06.907Z

Reserved: 2017-10-24T00:00:00

Link: CVE-2017-15831

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-03-16T22:29:00.570

Modified: 2024-11-21T03:15:18.467

Link: CVE-2017-15831

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.