cvedb.io
CVE-2016-5864
HIGH · CVSS 7.8
EPSS exploitation probability: 0%
Published 2017-08-16T15:29:00.580 · Last modified 2026-06-17T00:50:11.717

Summary

In an audio driver function in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, some parameters are from userspace, and if they are set to a large value, integer overflow is possible followed by buffer overflow. In another function, a missing check for a lower bound may result in an out of bounds memory access.

Affected products

google — android

Does this affect you?

Add your gear to cvedb and we'll alert you only when google ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.