CVE-2017-8251

Publication date

2017-09-21 15:00:00

Family

qualcomm

State

PUBLISHED

Description

In all Qualcomm products with Android releases from CAF using the Linux kernel, in functions msm_isp_check_stream_cfg_cmd & msm_isp_stats_update_cgc_override, stream_cfg_cmd->num_streams is not checked, and could overflow the array stream_cfg_cmd->stream_handle.