CVE-2017-14875: Google Android

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

In the handler for the ioctl command VIDIOC_MSM_ISP_DUAL_HW_LPM_MODE in Android for MSM, Firefox OS for MSM, and QRD Android before 2017-05-23, a heap overread vulnerability exists.

Affected products

  • Google Android: affected versions not specified

Published 2018-03-30. Last modified 2026-06-17.