MEDIUM
An information disclosure vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to access data outside of its permission levels
Published Mar 8, 2017
4.7
MEDIUMCVSS 3.0
EPSS 0.89%
Description
An information disclosure vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32877245. References: QC-CR#1087469.
Affected products
-
- Version Kernel-3.10StatusaffectedConstraints-
- Version Kernel-3.18StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | |||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Google Inc. | Android | n/a |
|
OR
- 3.10
- 3.18
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (5)
- http://www.securityfocus.com/bid/96743 vdb-entryx_refsource_BID
- http://www.securitytracker.com/id/1037968 vdb-entryx_refsource_SECTRACK
- https://source.android.com/security/bulletin/2017-03-01 x_refsource_CONFIRM
- https://source.android.com/security/bulletin/2017-03-01.html PatchVendor Advisory
- https://source.codeaurora.org/quic/la/kernel/msm-3.18/commit/?id=530f3a0fd837ed105eddaf99810bc13d97dc4302 x_refsource_CONFIRMPatch
| Link | Providers | Tags |
|---|---|---|
| http://www.securityfocus.com/bid/96743 | vdb-entryx_refsource_BID | |
| http://www.securitytracker.com/id/1037968 | vdb-entryx_refsource_SECTRACK | |
| https://source.android.com/security/bulletin/2017-03-01 | x_refsource_CONFIRM | |
| https://source.android.com/security/bulletin/2017-03-01.html | PatchVendor Advisory | |
| https://source.codeaurora.org/quic/la/kernel/msm-3.18/commit/?id=530f3a0fd837ed105eddaf99810bc13d97dc4302 | x_refsource_CONFIRMPatch |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner google_android
Published Mar 8, 2017
Updated Aug 5, 2024
Reserved Nov 29, 2016
Link CVE-2017-0531
CISA Vulnrichment
Updated n/a