CVE-2017-11076: Use of Out-of-range Pointer Offset in Video
On some hardware revisions where VP9 decoding is hardware-accelerated, the frame size is not programmed correctly into the decoder hardware which can lead to an invalid memory access by the decoder.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-11076?
CVE-2017-11076 has been classified with a high severity due to the potential for invalid memory access leading to exploitation.
How do I fix CVE-2017-11076?
To fix CVE-2017-11076, ensure you update to the latest firmware provided by Qualcomm for the affected hardware revisions.
Which Qualcomm products are affected by CVE-2017-11076?
CVE-2017-11076 affects specific Qualcomm hardware revisions that support VP9 decoding with hardware acceleration.
Can CVE-2017-11076 lead to a system crash?
Yes, CVE-2017-11076 can potentially lead to a system crash due to invalid memory access by the decoder.
Is CVE-2017-11076 publicly disclosed?
Yes, CVE-2017-11076 has been publicly disclosed in security bulletins related to Qualcomm firmware vulnerabilities.