CVE-2015-9173: Buffer Overflow
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 410/12, SD 617, SD 650/52, SD 800, SD 808, and SD 810, missing of return value check in memscpy can cause memory corruption in TQS App.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2015-9173?
CVE-2015-9173 is a vulnerability in Android devices running Qualcomm Snapdragon Mobile SD 410/12, SD 617, SD 650/52, SD 800, SD 808, and SD 810 chipsets that can cause memory corruption in TQS App due to a missing return value check in memscpy.
How severe is CVE-2015-9173?
CVE-2015-9173 has a severity rating of 9.8 (critical).
Which software versions are affected by CVE-2015-9173?
Android devices running Qualcomm Snapdragon Mobile SD 410/12, SD 617, SD 650/52, SD 800, SD 808, and SD 810 chipsets before the security patch level of 2018-04-05 are affected by CVE-2015-9173.
How can I fix CVE-2015-9173?
To fix CVE-2015-9173, update your Android device to a version that includes the security patch level of 2018-04-05 or later.
Where can I find more information about CVE-2015-9173?
You can find more information about CVE-2015-9173 on the following references: [1] http://www.securityfocus.com/bid/103671 [2] https://source.android.com/security/bulletin/2018-04-01 [3] https://source.android.com/docs/security/bulletin/2018-04-01/#asterisk