CVE Database
/

CVE-2017-17764

Back to search

CVE-2017-17764

Published: Feb 23, 2018

Modified: Sep 16, 2024

PUBLISHED

Description

In all Qualcomm products with Android releases from CAF using the Linux kernel, the num_failure_info value from firmware is not properly validated in wma_rx_aggr_failure_event_handler() so that an integer overflow vulnerability in a buffer size calculation may potentially lead to a buffer overflow.

VendorProductVersions

Qualcomm, Inc.

Android for MSM, Firefox OS for MSM, QRD Android

affected
All Android releases from CAF using the Linux kernel

References

102974
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now