Change __copy_from_user to copy_from_user in kernel-drivers-qseecom CVE-2014-9785 remote

Tracked by Jolla (In progress)

asked 2017-06-22 13:08:54 +0300

this post is marked as community wiki

This post is a wiki. Anyone with karma >75 is welcome to improve it.

updated 2017-06-22 13:08:54 +0300

lpr gravatar image

Description
drivers/misc/qseecom.c in the Qualcomm components in Android before 2016-07-05 does not validate addresses before copying data, which allows attackers to gain privileges via a crafted application, aka Android internal bug 28469042 and Qualcomm internal bug CR545747. CVSS v3 Base:7.8high (attack range: remote)

Patch available: link

File affected: /kernel-adaptation-sbj-3.4.108.20161101.1/drivers/misc/qseecom.c lines 498fol.; 641fol.; 1314 fol ; 1457 fol

edit retag flag offensive close delete