PT-2018-1246 · Google+1 · Android+1

Published

2018-04-02

·

Updated

2018-05-01

·

CVE-2015-9223

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Android versions prior to 2018-04-05 security patch level Qualcomm Snapdragon Mobile versions (MDM9615, MDM9625, MDM9635M, SD 400, SD 600, and SD 800) (affected versions not specified)
Description The issue is caused by a buffer overflow in the memory of the Qualcomm Audio Handler component in the Android operating system. This can be exploited by a remote attacker to impact the confidentiality, integrity, and availability of protected information. The buffer overflow occurs when processing an audio buffer.
Recommendations For Android versions prior to 2018-04-05 security patch level: Update to a version with a security patch level of 2018-04-05 or later. For Qualcomm Snapdragon Mobile: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2018-00719
CVE-2015-9223

Affected Products

Android
Qualcomm Snapdragon Mobile