In all Qualcomm products with Android releases from CAF using the Linux kernel, array out of bounds access can occur if userspace sends more than 16 multicast addresses.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://source.android.com/security/bulletin/2017-07-01 | patch vendor advisory |
http://www.securityfocus.com/bid/99465 | vdb entry third party advisory |