Critical severity9.8NVD Advisory· Published Mar 30, 2018· Updated Jun 17, 2026
CVE-2017-14876
CVE-2017-14876
Description
In msm_ispif_config_stereo() in Android for MSM, Firefox OS for MSM, and QRD Android before 2017-06-21, the parameter params->entries[i].vfe_intf comes from userspace without any bounds check which could potentially result in a kernel out-of-bounds write.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Range: <2017-06-21
- Range: <2017-06-21
- Range: <2017-06-21
- Qualcomm, Inc./Android for MSM, Firefox OS for MSM, QRD Androidv5Range: All Android releases from CAF using the Linux kernel
Patches
Vulnerability mechanics
References
2- source.codeaurora.org/quic/la/kernel/msm-3.18/commit/nvdPatchThird Party Advisory
- source.android.com/security/bulletin/pixel/2018-02-01nvdVendor Advisory
News mentions
0No linked articles in our index yet.