890
VMScore

CVE-2015-9146

Published: 18/04/2018 Updated: 09/05/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

In Android prior to 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9625, MDM9635M, MDM9645, MDM9650, MDM9655, SD 400, SD 800, SD 835, SD 845, SD 850, and SDX20, when QDI read, write, or ioctl are called, the passed-in pointer is not properly validated before accessing it for the delayed response.

Vulnerable Product Search on Vulmon Subscribe to Product

qualcomm mdm9625_firmware -

qualcomm mdm9635m_firmware -

qualcomm mdm9650_firmware -

qualcomm mdm9655_firmware -

qualcomm sd_400_firmware -

qualcomm sd_800_firmware -

qualcomm sd_835_firmware -

qualcomm sd_845_firmware -

qualcomm sdx20_firmware -

qualcomm sd_850_firmware -