cvelist/2018/11xxx/CVE-2018-11832.json

68 lines
2.2 KiB
JSON
Raw Normal View History

2018-06-07 09:03:14 -04:00
{
"CVE_data_meta" : {
2018-09-18 13:12:45 +05:30
"ASSIGNER" : "product-security@qualcomm.com",
2018-06-07 09:03:14 -04:00
"ID" : "CVE-2018-11832",
2018-09-18 13:12:45 +05:30
"STATE" : "PUBLIC"
},
"affects" : {
"vendor" : {
"vendor_data" : [
{
"product" : {
"product_data" : [
{
"product_name" : "Android for MSM, Firefox OS for MSM, QRD Android",
"version" : {
"version_data" : [
{
"version_value" : "All Android releases from CAF using the Linux kernel"
}
]
}
}
]
},
"vendor_name" : "Qualcomm, Inc."
}
]
}
2018-06-07 09:03:14 -04:00
},
"data_format" : "MITRE",
"data_type" : "CVE",
"data_version" : "4.0",
"description" : {
"description_data" : [
{
"lang" : "eng",
2018-09-19 10:26:48 -04:00
"value" : "In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, lack of input size validation before copying to buffer in PMIC function can lead to heap overflow."
2018-09-18 13:12:45 +05:30
}
]
},
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng",
"value" : "Buffer Copy Without Checking Size of Input in PMIC"
}
]
}
]
},
"references" : {
"reference_data" : [
2018-09-18 14:05:02 -04:00
{
"name" : "https://source.codeaurora.org/quic/la/kernel/msm-3.18/commit/?id=492fdce2626efc01004bea4aed4ea89b7c5cb5b3",
"refsource" : "CONFIRM",
"url" : "https://source.codeaurora.org/quic/la/kernel/msm-3.18/commit/?id=492fdce2626efc01004bea4aed4ea89b7c5cb5b3"
},
2018-09-18 13:12:45 +05:30
{
"name" : "https://www.codeaurora.org/security-bulletin/2018/09/04/september-2018-code-aurora-security-bulletin",
"refsource" : "CONFIRM",
"url" : "https://www.codeaurora.org/security-bulletin/2018/09/04/september-2018-code-aurora-security-bulletin"
2018-06-07 09:03:14 -04:00
}
]
}
}