CVE-2017-6421: Google Android

High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.

In the touch controller function in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, a variable may be controlled by the user and can lead to a buffer overflow.

Affected products

Published 2017-08-16. Last modified 2026-06-17.