In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while processing preferred network offload scan results integer overflow may lead to buffer overflow when large frame length is received from FW.
References
Link | Resource |
---|---|
https://www.codeaurora.org/security-bulletin/2018/09/04/september-2018-code-aurora-security-bulletin | Patch Third Party Advisory |
https://source.codeaurora.org/quic/la/platform/vendor/qcom-opensource/wlan/qcacld-3.0/commit/?id=e60c5608f843ec106a98a98b33de0c3be070d557 | Patch Third Party Advisory |
http://www.securityfocus.com/bid/107770 | Third Party Advisory VDB Entry |
Configurations
History
No history.
Information
Published : 2018-09-19 14:29
Updated : 2019-04-18 12:59
NVD link : CVE-2018-11894
Mitre link : CVE-2018-11894
JSON object : View
Products Affected
- android
CWE
CWE-190
Integer Overflow or Wraparound