CVE-2015-9182: Input Validation
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear MDM9206, MDM9650, MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 800, SD 808, SD 810, SD 820, SD 820A, SD 835, SD 845, and SD 850, lack of input validation in OEMCryptoGenerateSignature() can cause buffer over read.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-9182?
The severity of CVE-2015-9182 is critical with a severity value of 9.8.
How does CVE-2015-9182 affect Qualcomm Snapdragon devices?
CVE-2015-9182 affects Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear devices running certain firmware versions.
What is the vulnerability description of CVE-2015-9182?
CVE-2015-9182 is a security vulnerability in Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear devices.
How can I fix CVE-2015-9182?
To fix CVE-2015-9182, make sure to update your Android device to the latest security patch level provided by Qualcomm or the vendor.
Where can I find more information about CVE-2015-9182?
You can find more information about CVE-2015-9182 in the security bulletin provided by Google for Android devices.