Логотип exploitDog
bind:CVE-2017-10998
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2017-10998

Количество 2

Количество 2

nvd логотип

CVE-2017-10998

больше 8 лет назад

In all Qualcomm products with Android releases from CAF using the Linux kernel, in audio_aio_ion_lookup_vaddr, the buffer length, which is user input, ends up being used to validate if the buffer is fully within the valid region. If the buffer length is large enough then the address + length operation could overflow and produce a result far below the valid region.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-pvj8-wfqp-fgm5

больше 3 лет назад

In all Qualcomm products with Android releases from CAF using the Linux kernel, in audio_aio_ion_lookup_vaddr, the buffer length, which is user input, ends up being used to validate if the buffer is fully within the valid region. If the buffer length is large enough then the address + length operation could overflow and produce a result far below the valid region.

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2017-10998

In all Qualcomm products with Android releases from CAF using the Linux kernel, in audio_aio_ion_lookup_vaddr, the buffer length, which is user input, ends up being used to validate if the buffer is fully within the valid region. If the buffer length is large enough then the address + length operation could overflow and produce a result far below the valid region.

CVSS3: 7.8
0%
Низкий
больше 8 лет назад
github логотип
GHSA-pvj8-wfqp-fgm5

In all Qualcomm products with Android releases from CAF using the Linux kernel, in audio_aio_ion_lookup_vaddr, the buffer length, which is user input, ends up being used to validate if the buffer is fully within the valid region. If the buffer length is large enough then the address + length operation could overflow and produce a result far below the valid region.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу