PT-2018-17197 · Google+1 · Android+1

Published

2018-07-06

·

Updated

2018-09-04

·

CVE-2018-5862

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions: Android versions prior to security patch level 2018-07-05
Description: A buffer overwrite can potentially occur in the wlan hdd cfg80211 vendor scan() function when SCAN SSIDS and QCA WLAN VENDOR ATTR SCAN FREQUENCIES are parsed. This issue affects all Android releases from CAF using the Linux kernel before the specified security patch level.
Recommendations: For Android versions prior to the security patch level 2018-07-05, update to a version that includes the security patch level 2018-07-05 or later to resolve the issue.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-5862

Affected Products

Android
Linux Kernel