In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, lack of length validation check for value received from firmware can lead to OOB access in WLAN HOST.
Vector
LOCAL
Complexity
LOW
Authentication
NONE
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE
Advisory | Patch | Confirmed | Link |
---|---|---|---|
107770 | |||
https://source.codeaurora.org/quic/la/platform/vendor/qc... | |||
https://www.codeaurora.org/security-bulletin/2018/09/04/... |