Back to search
CVE-2018-5843
Published: Jun 12, 2018
Modified: Sep 17, 2024
PUBLISHED
Description
In the function wma_pdev_div_info_evt_handler() in all Android releases from CAF (Android for MSM, Firefox OS for MSM, QRD Android) using the Linux Kernel, there is no upper bound check on the value event->num_chains_valid received from firmware which can lead to a buffer overwrite of the fixed size chain_rssi_result structure.
| Vendor | Product | Versions |
|---|---|---|
Qualcomm, Inc. | Android for MSM, Firefox OS for MSM, QRD Android | affected All Android releases from CAF using the Linux kernel |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now