Unvalidated Array Access in wma_roam_synch_event_handler Function
CVE-2017-15861 · HIGH Severity
AV:L/AC:L/AU:N/C:C/I:C/A:C
In all Qualcomm products with Android releases from CAF using the Linux kernel, in the function wma_roam_synch_event_handler, vdev_id is received from firmware and used to access an array without validation.
Learn more about our Cis Benchmark Audit For Distribution Independent Linux.