CVE-2016-5344

Multiple integer overflows in the MDSS driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allow attackers to cause a denial of service or possibly have unspecified other impact via a large size value, related to mdss_compat_utils.c, mdss_fb.c, and mdss_rotator.c.
Configurations

Configuration 1 (hide)

cpe:2.3:o:google:android:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:54

Type Values Removed Values Added
References () http://source.android.com/security/bulletin/2016-10-01.html - Patch, Third Party Advisory () http://source.android.com/security/bulletin/2016-10-01.html - Patch, Third Party Advisory
References () http://www.securityfocus.com/bid/92695 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/92695 - Third Party Advisory, VDB Entry
References () https://source.codeaurora.org/quic/la/kernel/msm-3.18/commit/?id=1d2297267c24f2c44bd0ecb244ddb8bc880a29b7 - Mailing List, Patch, Third Party Advisory () https://source.codeaurora.org/quic/la/kernel/msm-3.18/commit/?id=1d2297267c24f2c44bd0ecb244ddb8bc880a29b7 - Mailing List, Patch, Third Party Advisory
References () https://www.codeaurora.org/integer-overflow-mdss-driver-cve-2016-5344 - Broken Link () https://www.codeaurora.org/integer-overflow-mdss-driver-cve-2016-5344 - Broken Link

Information

Published : 2016-08-30 17:59

Updated : 2024-11-21 02:54


NVD link : CVE-2016-5344

Mitre link : CVE-2016-5344

CVE.ORG link : CVE-2016-5344


JSON object : View

Products Affected

google

  • android

linux

  • linux_kernel
CWE
CWE-190

Integer Overflow or Wraparound