In all Qualcomm products with Android releases from CAF using the Linux kernel, in the function wma_roam_synch_event_handler, vdev_id is received from firmware and used to access an array without validation.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: qualcomm

Published: 2018-02-23T23:00:00Z

Updated: 2024-09-16T20:02:57.610Z

Reserved: 2017-10-24T00:00:00

Link: CVE-2017-15861

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2018-02-23T23:29:00.640

Modified: 2018-03-12T16:47:49.347

Link: CVE-2017-15861

cve-icon Redhat

No data.