In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, lack of check on input received to calculate the buffer length can lead to out of bound write to kernel stack.
References
Link | Resource |
---|---|
https://www.codeaurora.org/security-bulletin/2018/09/04/september-2018-code-aurora-security-bulletin | Patch Third Party Advisory |
https://source.codeaurora.org/quic/la/platform/vendor/qcom-opensource/wlan/qcacld-3.0/commit/?id=0f6839316f43d48833750667b979aec11558abc0 | Third Party Advisory Patch |
http://www.securityfocus.com/bid/107770 | Third Party Advisory VDB Entry |
Configurations
Information
Published : 2018-09-18 11:29
Updated : 2019-04-18 06:01
NVD link : CVE-2018-11851
Mitre link : CVE-2018-11851
JSON object : View
CWE
CWE-787
Out-of-bounds Write
Products Affected
- android