CVE-2015-7292

CRITICAL

Amazon Fire OS < 2016-01-15 - Stack-Based Buffer Overflow in havok_write Function

Title source: llm
STIX 2.1

Description

Stack-based buffer overflow in the havok_write function in drivers/staging/havok/havok.c in Amazon Fire OS before 2016-01-15 allows attackers to cause a denial of service (panic) or possibly have unspecified other impact via a long string to /dev/hv.

References (1)

Core 1

Scores

CVSS v3 9.8
EPSS 0.0041
EPSS Percentile 61.5%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-119
Status published
Products (2)
amazon/fire_os < 5.0
n/a/Amazon Fire OS before 2016-01-15 Amazon Fire OS before 2016-01-15
Published Apr 10, 2017
Tracked Since Feb 18, 2026