CVE-2017-18052
- EPSS 0.12%
- Veröffentlicht 16.03.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:15
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for cmpl_params->num_reports, param_buf->desc_ids and param_buf->status in wma_mgmt_tx_bundle_completion_handler...
CVE-2017-18053
- EPSS 0.12%
- Veröffentlicht 16.03.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:15
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for fix_param->vdev_id in wma_p2p_lo_event_handler(), which is received from firmware, leads to potential out of...
CVE-2017-18054
- EPSS 0.02%
- Veröffentlicht 16.03.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:15
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for num_vdev_mac_entries in wma_pdev_hw_mode_transition_evt_handler(), which is received from firmware, leads to...
CVE-2017-18055
- EPSS 0.02%
- Veröffentlicht 16.03.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:15
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for wmi_event->num_vdev_mac_entries in wma_pdev_set_hw_mode_resp_evt_handler(), which is received from firmware,...
- EPSS 0.11%
- Veröffentlicht 15.03.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 02:43:54
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, when processing a clip with large size values, integer arithmetic overflows, and allocated buffer size will be less than intended buffer s...
CVE-2017-14878
- EPSS 0.34%
- Veröffentlicht 15.03.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 03:13:41
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a length variable which is used to copy data has a size of only 8 bits and can be exceeded resulting in a denial of service.
CVE-2017-14882
- EPSS 0.52%
- Veröffentlicht 15.03.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 03:13:41
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing VENDOR specific action frame in the function lim_process_action_vendor_specific(), a comparison is performed with the inc...
CVE-2017-14885
- EPSS 0.03%
- Veröffentlicht 15.03.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 03:13:41
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, wma_unified_link_peer_stats_event_handler function has a variable num_rates which represents the sum of all the peer_stats->num_rates. The...
- EPSS 0.6%
- Veröffentlicht 15.03.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 03:15:17
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a potential buffer overflow can happen when processing any 802.11 MGMT frames like Auth frame in limProcessAuthFrame.
CVE-2017-15821
- EPSS 0.03%
- Veröffentlicht 15.03.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 03:15:17
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the function wma_p2p_noa_event_handler(), there is no bound check on a value coming from firmware which can potentially lead to a buffe...