CVE-2017-15830
Description
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper ch_list array index initialization in function sme_set_plm_request() causes potential buffer overflow.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Improper array index initialization in sme_set_plm_request() in Android/MSM kernels can lead to a buffer overflow.
Vulnerability
In Android for MSM, Firefox OS for MSM, QRD Android, and all Android releases from CAF using the Linux kernel, the sme_set_plm_request() function in the Wi-Fi driver improperly initializes the ch_list array index. This can cause a buffer overflow when processing a PLM request. The vulnerability exists in kernel code used by affected platforms and is referenced in the March 2018 Pixel/Nexus Security Bulletin [1].
Exploitation
An attacker must be in a position to send a crafted PLM request to the affected device, likely requiring local access or a compromised Wi-Fi subsystem. The improper array index leads to out-of-bounds memory access when the function processes the request [1].
Impact
Successful exploitation could result in a buffer overflow, potentially allowing an attacker to corrupt memory. The bulletin categorizes this as a type of vulnerability that could lead to escalation of privilege or denial of service, depending on how the overflow is leveraged [1].
Mitigation
The fix is included in the March 2018 security patch level (2018-03-05) for Google Pixel and Nexus devices. Users should apply the update to their devices. No workaround is mentioned in the available reference [1].
AI Insight generated on May 26, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- source.android.com/security/bulletin/pixel/2018-03-01mitrex_refsource_CONFIRM
- source.codeaurora.org/quic/la/platform/vendor/qcom-opensource/wlan/qcacld-3.0/commit/mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.