CVE-2017-14915: Use After Free
In Android before 2018-01-05 on Qualcomm Snapdragon Mobile SD 625, SD 650/52, SD 835, accessing SPCOM functions with a compromised client structure can result in a Use After Free condition.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-14915?
CVE-2017-14915 is classified as a critical vulnerability due to its potential to allow unauthorized access and exploitation of the affected devices.
How do I fix CVE-2017-14915?
To mitigate CVE-2017-14915, update the Qualcomm firmware to the latest version released after January 5, 2018.
Which devices are affected by CVE-2017-14915?
CVE-2017-14915 affects Qualcomm Snapdragon SD 625, SD 650/52, and SD 835 devices running Android before January 5, 2018.
What type of vulnerability is CVE-2017-14915?
CVE-2017-14915 is a use-after-free vulnerability that can occur when accessing SPCOM functions with a compromised client structure.
What should I do if I can't update my device for CVE-2017-14915?
If unable to update, it is advised to minimize exposure and avoid using sensitive data on affected devices until a fix is applied.