CVE-2015-9112

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile and Snapdragon Mobile MDM9625, SD 400, SD 800, SD 820, and SD 820A, lack of input validation in QSEE can cause potential buffer overflow.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:qualcomm:mdm9625_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9625:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:qualcomm:sd_400_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd_400:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:qualcomm:sd_800_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd_800:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:qualcomm:sd_820a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd_820a:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:qualcomm:sd_820_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd_820:-:*:*:*:*:*:*:*

History

21 Nov 2024, 02:39

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/103671 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/103671 - Third Party Advisory, VDB Entry
References () https://source.android.com/security/bulletin/2018-04-01 - Vendor Advisory () https://source.android.com/security/bulletin/2018-04-01 - Vendor Advisory

Information

Published : 2018-04-18 14:29

Updated : 2024-11-21 02:39


NVD link : CVE-2015-9112

Mitre link : CVE-2015-9112

CVE.ORG link : CVE-2015-9112


JSON object : View

Products Affected

qualcomm

  • mdm9625_firmware
  • sd_800
  • sd_400_firmware
  • sd_400
  • sd_820a_firmware
  • mdm9625
  • sd_820a
  • sd_820_firmware
  • sd_800_firmware
  • sd_820
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer