Vulnerabilities > CVE-2017-8272 - Out-of-bounds Write vulnerability in Google Android

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
google
CWE-787

Summary

In all Qualcomm products with Android releases from CAF using the Linux kernel, in a driver function, a value from userspace is not properly validated potentially leading to an out of bounds heap write.

Vulnerable Configurations

Part Description Count
OS
Google
1

Common Weakness Enumeration (CWE)