ZeroHour

CVE-2017-14887

CVSS 3.0
7.8 high
EPSS
<1%p8
Published
()
Modified
Description

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the processing of messages of type eWNI_SME_MODIFY_ADDITIONAL_IES, an integer overflow leading to heap buffer overflow may potentially occur.

Vendors
google
Products
android
Weakness
CWE-119, CWE-190
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.