CVE-2015-9150: Buffer Overflow
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9625, MDM9635M, SD 400, and SD 800, while computing the length of memory allocated for a Diag event, if the buffer length is very small or greater than the maximum, an integer overflow may occur, which later results in a buffer overflow.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-9150?
The severity of CVE-2015-9150 is critical, with a severity value of 9.8.
Which Qualcomm Snapdragon Mobile devices are affected by CVE-2015-9150?
Qualcomm Snapdragon Mobile devices MDM9625, MDM9635M, SD 400, and SD 800 are affected by CVE-2015-9150.
What can happen if the buffer length in CVE-2015-9150 is very small or greater than the maximum?
If the buffer length in CVE-2015-9150 is very small or greater than the maximum, an integer overflow may occur.
How can I fix CVE-2015-9150?
To fix CVE-2015-9150, update your Android device to the latest security patch level provided by Google or Qualcomm.
Where can I find more information about CVE-2015-9150?
You can find more information about CVE-2015-9150 at the following references: [link1], [link2], [link3].