Description
In all Qualcomm products with Android releases from CAF using the Linux kernel, during DMA allocation, due to wrong data type of size, allocation size gets truncated which makes allocation succeed when it should fail.
References (6)
Scores
CVSS v3
7.8
EPSS
0.0018
EPSS Percentile
39.8%
Attack Vector
LOCAL
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Details
CWE
CWE-682
Status
published
Products (1)
google/android
< 8.0
Published
Sep 21, 2017
Tracked Since
Feb 18, 2026