PT-2017-2806 · Qualcomm+2 · Qualcomm Products+2

Billy Lau

·

Published

2017-04-25

·

Updated

2019-10-03

·

CVE-2017-8263

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Qualcomm products with Android releases from CAF using the Linux kernel (affected versions not specified)
Description The issue is related to a kernel fault that can occur when performing certain operations on a read-only virtual address in userspace. This is due to incorrect handling of data when working with virtual memory in userspace that is only accessible for reading. Exploitation of this issue may allow a remote attacker to cause a kernel crash or execute arbitrary code using a specially crafted application.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2017-02076
CVE-2017-8263

Affected Products

Android
Linux Kernel
Qualcomm Products