In wma_peer_info_event_handler() in Android for MSM, Firefox OS for MSM, and QRD Android before 2017-10-03, the value of num_peers received from firmware is not properly validated so that an integer overflow vulnerability in the size of a buffer allocation may potentially lead to a buffer overflow.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: qualcomm

Published: 2018-03-30T21:00:00Z

Updated: 2024-09-16T18:34:34.480Z

Reserved: 2017-12-19T00:00:00

Link: CVE-2017-17766

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2018-03-30T21:29:01.183

Modified: 2018-04-25T15:03:48.180

Link: CVE-2017-17766

cve-icon Redhat

No data.