2017-10-16 12:31:07 -04:00
|
|
|
{
|
2019-03-18 03:35:41 +00:00
|
|
|
"CVE_data_meta": {
|
|
|
|
"ASSIGNER": "product-security@qualcomm.com",
|
|
|
|
"DATE_PUBLIC": "2018-04-02T00:00:00",
|
|
|
|
"ID": "CVE-2015-9224",
|
|
|
|
"STATE": "PUBLIC"
|
|
|
|
},
|
|
|
|
"affects": {
|
|
|
|
"vendor": {
|
|
|
|
"vendor_data": [
|
|
|
|
{
|
|
|
|
"product": {
|
|
|
|
"product_data": [
|
|
|
|
{
|
|
|
|
"product_name": "Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear, Small Cell SoC",
|
|
|
|
"version": {
|
|
|
|
"version_data": [
|
|
|
|
{
|
|
|
|
"version_value": "FSM9055, MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 425, SD 430, SD 450, SD 600, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 800, SD 808, SD 810, SD 820, SD 820A, SD 835, SD 845, SD 850, SDX20"
|
|
|
|
}
|
|
|
|
]
|
|
|
|
}
|
|
|
|
}
|
|
|
|
]
|
|
|
|
},
|
|
|
|
"vendor_name": "Qualcomm, Inc."
|
|
|
|
}
|
|
|
|
]
|
|
|
|
}
|
|
|
|
},
|
|
|
|
"data_format": "MITRE",
|
|
|
|
"data_type": "CVE",
|
|
|
|
"data_version": "4.0",
|
|
|
|
"description": {
|
|
|
|
"description_data": [
|
2018-04-18 08:13:54 -04:00
|
|
|
{
|
2019-03-18 03:35:41 +00:00
|
|
|
"lang": "eng",
|
|
|
|
"value": "In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear, and Small Cell SoC FSM9055, MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 425, SD 430, SD 450, SD 600, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 800, SD 808, SD 810, SD 820, SD 820A, SD 835, SD 845, SD 850, and SDX20, lack of input Validation in QURTK_write() can cause potential buffer overflow."
|
2018-04-18 08:13:54 -04:00
|
|
|
}
|
2019-03-18 03:35:41 +00:00
|
|
|
]
|
|
|
|
},
|
|
|
|
"problemtype": {
|
|
|
|
"problemtype_data": [
|
|
|
|
{
|
|
|
|
"description": [
|
|
|
|
{
|
|
|
|
"lang": "eng",
|
|
|
|
"value": "Buffer Copy with Checking Size in Core"
|
|
|
|
}
|
|
|
|
]
|
|
|
|
}
|
|
|
|
]
|
|
|
|
},
|
|
|
|
"references": {
|
|
|
|
"reference_data": [
|
|
|
|
{
|
|
|
|
"name": "https://source.android.com/security/bulletin/2018-04-01",
|
|
|
|
"refsource": "CONFIRM",
|
|
|
|
"url": "https://source.android.com/security/bulletin/2018-04-01"
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"name": "103671",
|
|
|
|
"refsource": "BID",
|
|
|
|
"url": "http://www.securityfocus.com/bid/103671"
|
|
|
|
}
|
|
|
|
]
|
|
|
|
}
|
|
|
|
}
|