CVE-2017-8280

In all Qualcomm products with Android releases from CAF using the Linux kernel, during the wlan calibration data store and retrieve operation, there are some potential race conditions which lead to a memory leak and a buffer overflow during the context switch.
References
Link Resource
http://www.securityfocus.com/bid/100658 Third Party Advisory VDB Entry
https://source.android.com/security/bulletin/2017-09-01 Patch Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:o:google:android:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2017-09-21 15:29

Updated : 2024-02-04 19:29


NVD link : CVE-2017-8280

Mitre link : CVE-2017-8280

CVE.ORG link : CVE-2017-8280


JSON object : View

Products Affected

google

  • android
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

CWE-362

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

CWE-772

Missing Release of Resource after Effective Lifetime