In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, Buffer overread may occur due to non-null terminated strings while processing vsprintf in camera jpeg driver.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/106136 | third party advisory vdb entry |
https://www.codeaurora.org/security-bulletin/2018/12/03/december-2018-code-aurora-security-bulletin | third party advisory patch |