CVE-2017-9725
HIGHQualcomm Android - Memory Corruption
Title source: llmDescription
In all Qualcomm products with Android releases from CAF using the Linux kernel, during DMA allocation, due to wrong data type of size, allocation size gets truncated which makes allocation succeed when it should fail.
References (6)
Scores
CVSS v3
7.8
EPSS
0.0018
EPSS Percentile
40.0%
Attack Vector
LOCAL
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Classification
CWE
CWE-682
Status
draft
Affected Products (1)
google/android
< 8.0
Timeline
Published
Sep 21, 2017
Tracked Since
Feb 18, 2026