CVE-2016-5855: Google Android

Medium severity, CVSS 4.7. EPSS: 0.5% chance of exploitation in the next 30 days.

In a driver in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, a user-supplied buffer is casted to a structure without checking if the source buffer is large enough.

Affected products

Published 2017-08-16. Last modified 2026-06-17.