ZeroHour

CVE-2017-11076

CVSS 3.1
9.8 critical
EPSS
<1%p28
Published
()
Modified
Description

On some hardware revisions where VP9 decoding is hardware-accelerated, the frame size is not programmed correctly into the decoder hardware which can lead to an invalid memory access by the decoder.

Vendors
qualcomm
Products
msm8909w firmware, msm8996au firmware, sd 210 firmware, sd 212 firmware, sd 205 firmware, sd 425 firmware, sd 427 firmware, sd 430 firmware, sd 435 firmware, sd 450 firmware, sd 615 firmware, sd 616 firmware
Weakness
CWE-823, CWE-119
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.